Python Q&A site StackExchange was hacked to spread malware disguised as answers

Checkmarx researchers have uncovered a sophisticated campaign in which attackers built credibility within the Python Package Index (PyPI) community to release malware that drains cryptocurrency and steals data.

Just over a month ago, attackers uploaded several non-malicious Python packages, such as 'spl-types', to establish credibility and evade detection of a future attack, via the StackExchange Q&A website.

scroll to top