• Alerts
  • Events
  • DCR
    • Explore Cyware Products
    Alerts Events DCR
    Go to listing page

    Malicious PyPI Packages Stole Cloud Access Tokens Through Over 14,100 Downloads Before Removal

    • Malware and Vulnerabilities
    • March 17, 2025
    • The Hacker News
    Cybersecurity researchers have warned of a malicious campaign targeting users of the PyPI repository with fake libraries masquerading as "time" related utilities, but harboring hidden functionality to steal sensitive data such as cloud access tokens.
    Read More
    • Malicious PyPI packages
    • Access Tokens
    • Cloud Environments
    • Data exfiltration
    • Amazon Web Services (AWS)
    Cyware Publisher

    Publisher

    Previous

    Volt Typhoon Accessed US OT Network for Nearly a Year

    Incident Response, Learnings

    Next

    Crypto Traps, Fake Giveaways Trick Victims During Ramad ...

    Identity Theft, Fraud, Scams


    RESOURCES
    Cyber Fusion Center Guide
    EVENTS

    News and Updates, Hacker News

    Get in touch with us now!

    1-855-692-9927


    Download Cyware Social App

    Terms of Use Privacy Policy © 2023