Hackers Upload Weaponized Packages to PyPI Repositories to Steal AWS, CI/CD and macOS Data

A sophisticated malware campaign has emerged targeting the Python Package Index (PyPI) repository, with cybercriminals deploying weaponized packages designed to steal sensitive cloud infrastructure credentials and corporate data. The malicious package, identified as “chimera-sandbox-extensions,” represents a new breed of supply chain attacks that specifically target enterprise environments rather than individual users. The attack begins when […]

The post Hackers Upload Weaponized Packages to PyPI Repositories to Steal AWS, CI/CD and macOS Data appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: