Malicious PyPI Packages Using Compiled Python Code to Bypass Detection
June 1, 2023
Comments (0)
Jun 01, 2023Ravie LakshmananProgramming / Supply Chain Researchers have discovered a novel attack on the Python Package Index (PyPI) repository that employs compiled Python code to sidestep detection by application security tools. “It may be the first supply chain attack to take advantage of the fact that Python bytecode (PYC)