{ads}

Malicious PyPI Package ‘Fabrice’ Found Stealing AWS Keys from Thousands of Developers



November 07, 2024 at 02:37PM

Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) that has racked up thousands of downloads for over three years while stealthily exfiltrating developers' Amazon Web Services (AWS) credentials. The package in question is "fabrice," which typosquats a popular Python library known as "fabric," which is designed to execute shell commands remotely over

from The Hacker News https://ift.tt/VYXQlSg

0 Response to "Malicious PyPI Package ‘Fabrice’ Found Stealing AWS Keys from Thousands of Developers"

Post a Comment

Article Top Ads

Central Ads Article 1

Middle Ads Article 2

Article Bottom Ads