New Weaponized PyPI Package Attacking Developers to Steal Source Code

A newly discovered malicious Python package, solana-token, has been weaponized to steal source code and sensitive secrets from developers working on Solana blockchain applications. Uploaded to the Python Package Index (PyPI), the module masqueraded as a legitimate utility for Solana-based projects but harbored code designed to exfiltrate critical data to a remote server. ReversingLabs researchers […]

The post New Weaponized PyPI Package Attacking Developers to Steal Source Code appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: