Diamond Member ThaHaka 0 Posted April 30 Diamond Member Share Posted April 30 This is the hidden content, please Sign In or Sign Up In yet another software supply chain attack, threat actors have managed to compromise the popular Python package Lightning to push two malicious versions to conduct credential theft. According to Aikido Security, Socket, and StepSecurity, the two malicious versions are versions 2.6.2 and 2.6.3, both of which were published on April 30, 2026. The campaign is assessed to be an extension of the This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/311364-h4ckn3wspytorch-lightning-compromised-in-pypi-supply-chain-attack-to-steal-credentials/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.