The malicious python packages steal vital data and have already been downloaded thousands of times


  • The researchers found three malicious pypi packages, two target Bitcoin developers and a WooCommerce store
  • Two are designed to steal data, and the third to test valid credit cards
  • The three have since been removed from the repository

Several open source software packages on the Python Package Index (Pypi) benchmark have proven malicious, probably compromising thousands of devices, have warned experts.

Researchers in Cybersecurity in Reversinglabs have found two malicious packages, “Bitcoinlibdbfix” and “Bitcoinlib-Dev”, which cumulatively 2,000 downloads.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top