Explore tweets tagged as #PyPi
🛑 Heads-up: #num2words v0.5.15 (just dropped on PyPI) may be #compromised. Early signs probably link it to #Scavenger, the same threat actor behind previous software supply chain intrusions. @MalwareUtkonos @cyb3rjerry @InvokeReversing
4
18
45
#OceanLotus #APT32 #PyPi. uuid32_utils-1.x.x-py3-none-win32.whl.cf3f59e2c4c8767697ea46475171697c.91a476fea45abc8b208e0a9e3293f774.a7a0add66b205967562c1fa9643b8421.22538214a3c917ff3b13a9e2035ca521.02f4701559fc40067e69bb426776a54f.5598baa59c716590d8841c6312d8349e. Backward.dll
2
6
21
Our fast high-quality brain mesh generator #Brain2mesh toolbox ( has been ported to Python!. get it today by installing the #iso2mesh Python module v0.4.2 from pypi. or register/download here.
0
4
7
#OceanLotus #APT32 #PyPi. Import the above malicious library - colorinal. termncolor-3.1.0-py3-none-any.whl.5152410aeef667ffaf42d40746af4d84
0
1
8
The num2words Python PyPI packages v0.5.15 and v0.5.16 were compromised this morning and used to distribute the Scavenger malware. A detailed write up can be found here: big thanks to @johnk3r for raising this and @cyb3rjerry for his assistance.
0
14
44