Malicious python -packs steal important data and have already been downloaded thousands of times


  • Scientists found three malicious pypi -packs, two targeted bitcoin developers and a woocommerce shop
  • Two is designed to steal data and the third that tests for valid credit card
  • All three have since been removed from the depot

Several open source software packages on the Python Package Index (Pypi) room turned out to be malicious, which is likely to compromise thousands of devices, experts have warned.

CyberSecurity researchers at ReversingLabs found two malicious packages, “BitcoinLibdbfix” and “Bitcoinlib-Dev”, which cumulatively has about 2,000 downloads.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top