Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Malicious Python package collects AWS credentials via 37,000 downloads
- A malicious Python package called "Fabrice" that’s been live on PyPI since 2021 has been typosquatting the popular Fabric SSH automation library, quietly exfiltrating AWS credentials by making more than 37,000 downloads.
- The Socket Research Team said in a Nov. 6 post that the legitimate Fabric library has more than 201 million downloads and has earned the trust of developers worldwide. Fabric operates as a high-level Python (2.7, 3.4+) library that executes shell commands remotely over SSH, yielding useful Python objects in return.
- for more:https://cuty.io/m4AFjod9mDo
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement