icon

Digital safety starts here for both commercial and personal Use...

Defend Your Business Against the Latest WNY Cyber Threats We offer Safe, Secure and Affordable Solutions for your Business and Personal Networks and Devices.



WNYCyber is there to help you to choose the best service providers in Western New York... We DO NOT provide the services ourselves, as we are Internet Programmers who have to deak daily with Cyber Threats... (Ugghhh)... So we know what it's like and what it takes to protect OUR and OUR CUSTOMERS DATA... We built this Website to help steer you to those that can give you the best service at realistic and non-inflated prices. We do charge or collect any fees.

Over 170K Users Affected by Attack Using Fake Python Infrastructure

Summary:
The Checkmarx Research team uncovered a sophisticated attack campaign targeting the software supply chain, affecting numerous victims, including the Top[.]gg GitHub organization with over 170k users and individual developers. The attackers utilized various tactics such as account takeover, malicious code contributions, setting up a fake Python mirror, and publishing tainted packages to the PyPi registry. They employed multiple deceptive techniques to evade detection, including creating convincing typosquatting domains and hiding malicious code within legitimate packages.

Security Officer Comments:
The attackers hijacked high-reputation GitHub accounts to contribute malicious commits and spread the malware further. The malicious payload, distributed through poisoned dependencies, executed multiple stages of obfuscated code, aiming to steal sensitive data like browser information, Discord tokens, cryptocurrency wallets, and more.

Suggested Corrections:
The incident underscores the importance of scrutinizing dependencies and maintaining robust security practices in the software supply chain.

Link(s):
https://checkmarx.com/blog/over-170k-users-affected-by-attack-using-fake-python-infrastructure/