[ TAG // PYANALYSIS // 14 ITEMS ]

#pyanalysis

← Threats // Supply chain

// Threats

pip install teligram

pip install teligram 🧐 (better not run it) On February 8, the teligram library was published. Its description reads: Telegram-based friendly library. Alas, as u…

ti_author
// Threats

Drama around PyPI: 🪰⮕🐘?

Drama around PyPI: 🪰⮕🐘? Last week, CNews published a news item: "Russians driven out of the Python community. Only the chosen ones for now, but the selection cr…

ti_author
// Threats

Malware in open source!

Mmaallwwaarree iinn ooppeennssoouurrccee! A notable campaign by a single researcher is unfolding online. The following packages belong to him: User lastbright…

ti_author
// Threats

Through blockchain to data

Through the blockchain to the data ⭐️ Researchers from Socket and Checkmarx have reported on an interesting malicious campaign in NPM. The attackers mimicked pl…

ti_author
// Threats

Catching bug hunters again

Catching bug hunters again 💀 In one of our previous posts we wrote about traces of bug bounty activity targeting "Yandex". History repeated itself, but this tim…

ti_author
// Threats

Open source passions: part two

Open source passions: part two Infostealers 🧋 No one is surprised by them anymore, since this is a popular class of malware, often mentioned in the news. Most t…

ti_author