Tomislav Pericin retweetledi

🚨Versions 2.6.2 and 2.6.3 of the PyPI package "lightning" are compromised. RL research note: It is the same type of #Shaihulud malware as in recent Bitwarden and SAP compromises.
English
Tomislav Pericin
1.5K posts

@ap0x
CSA at ReversingLabs LLC. Designs file analysis platforms, engines and reverse engineering tools for fun. Something about unpacking and PE file format.














RL automated threat detection system is detecting a new wave of Shai-hulud #npm packages. Look out for RL's TH15502 policy violation in npm packages. The campaign affects popular [@]asyncapi packages with millions of downloads. Here is an example - @asyncapi/specs/6.8.3" target="_blank" rel="nofollow noopener">secure.software/npm/packages/@…





