phylum

@phylum@infosec.exchange

Phylum automatically detects and blocks software supply chain attacks originating from open-source package registries: npm, PyPI, Rubygems, Crates.io, Nuget, Maven and Go.

Follow for research on supply chain attacks, malicious packages, and security shenanigans.

This profile is from a federated server and may be incomplete. Browse more on the original instance.

phylum, to opensource

We continue to identify sophisticated threats originating from the use of software packages. This time the attacker uses a signed executable to initiate the attack chain through an package.

https://blog.phylum.io/npm-package-found-delivering-sophisticated-rat/

phylum, to python

We continue to see packages published to . Over the last few days we've been tracking a series of packages purporting to help with internationalization.

https://blog.phylum.io/obfuscated-pypi-packages-purporting-to-be-i18n-libraries-actually-stealing-telegram-data/

We're also tracking several other campaigns in other ecosystems. More on this to follow.

campuscodi, to random
@campuscodi@mastodon.social avatar

DevSecOps company Phylum has spotted a threat actor publishing malicious libraries on three package repositories at the same time.

The campaign involved three malicious Python packages, seven JavaScript libraries, and two Ruby gems.

All libraries contained the same malicious code that gathered information on infected hosts and uploaded it to a Chinese server.

https://blog.phylum.io/malware-campaign-targets-npm-pypi-and-rubygems-developers/

phylum,

@campuscodi Thanks for sharing our research! This campaign appears to be ongoing - we've updated the list of packages to reflect this!

phylum, to opensource

We are currently tracking a campaign across ecosystems. While this isn't the first time we've seen this behavior, these coordinated attacks across package registries are becoming more frequent. Packages have been reported and removed.

More details to follow.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • โ€ข
  • JUstTest
  • kavyap
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • InstantRegret
  • Durango
  • Youngstown
  • everett
  • slotface
  • rosin
  • cubers
  • mdbf
  • ngwrru68w68
  • anitta
  • GTA5RPClips
  • cisconetworking
  • osvaldo12
  • ethstaker
  • Leos
  • khanakhh
  • normalnudes
  • tester
  • modclub
  • tacticalgear
  • megavids
  • provamag3
  • lostlight
  • All magazines