Diamond Member ThaHaka 0 Posted June 16, 2025 Diamond Member Share Posted June 16, 2025 This is the hidden content, please Sign In or Sign Up Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) repository that's capable of harvesting sensitive developer-related information, such as credentials, configuration data, and environment variables, among others. The package, named chimera-sandbox-extensions, attracted 143 downloads and likely targets users of a service called Chimera Sandbox, This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/273806-h4ckn3wsmalicious-pypi-package-masquerades-as-chimera-module-to-steal-aws-cicd-and-macos-data/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.