Gmail servers diverted by malicious pypi packages to spread the ravages – here is how to stay safe


  • Take found seven malicious packages on pypi
  • The packages abused Gmail and Websocket
  • They were removed from the platform

Several malicious pypi plans have recently been observed abusing gmail to exfiltrate stolen sensitive data and communicate with their operators.

Cybersecurity researchers, Socket, who found the packages, reported them to the Python repository and helped remove them from the platform – but the damage has already been caused.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top