Snakes in the grass! Malicious code slithers into Python PyPI repository

Software developers downloading a seemingly innocent software library could find themselves hemorrhaging Bitcoin thanks to a wily attack. A cybersecurity researcher calling himself ‘Bertus’ on Medium detailed an exploit that uses a common alternative spelling, remote code execution, and a rogue Bitcoin address to try and steal cryptocurrency from developers using the Python programming language.

Read full news article on Naked Security

 


Date:

Categorie(s):