National Cyber Warfare Foundation (NCWF)

Researchers Find Over 22,000 Removed PyPI Packages at Risk of Revival Hijack


0 user ratings
2024-09-04 15:14:11
milo
Blue Team (CND)

 - archive -- 
A new supply chain attack technique targeting the Python Package Index (PyPI) registry has been exploited in the wild in an attempt to infiltrate downstream organizations.
It has been codenamed Revival Hijack by software supply chain security firm JFrog, which said the attack method could be used to hijack 22,000 existing PyPI packages and result in "hundreds of thousands" of malicious package



Source: TheHackerNews
Source Link: https://thehackernews.com/2024/09/hackers-hijack-22000-removed-pypi.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2024 - National Cyber Warfare Foundation - All rights reserved worldwide.