Hallo zusammen,
sofern nicht selber schon gesehen/-lesen hier [0] FYI
"PyPi package backdoors Macs using the Sliver pen-testing suite"
--> "... mimicked the popular 'requests' library on the Python Package Index (PyPI) ..."
--> "... several steps and obfuscation layers, including using steganography in a PNG image file to covertly install the Sliver payload on the target ..."
--> malicious Python package for macOS named 'requests-darwin-lite,'
VG
Bernd
[0] https://www.bleepingcomputer.com/news/security/pypi-package-backdoors-macs-u...
rwth-security@lists.rwth-aachen.de