Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
PyTorch Discloses Malicious Dependency Chain Compromise Over Holidays
Malware and Vulnerabilities
January 02, 2023
Bleeping Computer
PyTorch has identified a malicious dependency with the same name as the framework's 'torchtriton' library. This has led to a successful compromise via the dependency confusion attack vector.
Read More
PyTorch
Malicious Dependency
Torchtriton library
Dependency Confusion Attacks
PyTorch-nightly
Publisher
Previous
Attackers never let a critical vulnerability go to wast ...
Trends, Reports, Analysis
Next
Google to Pay $29.5 Million to Settle Lawsuits Over Use ...
Incident Response, Learnings