A malicious Python Package Index (PyPI) package named “set-utils” has been discovered stealing Ethereum private keys by intercepting wallet creation functions and exfiltrating them via the Polygon blockchain. Disguised as a utility for Python, it mimics popular packages like “python-utils” and “utils,” which have millions of downloads. Researchers from the developer cybersecurity platform Socket identified […]
Cybersecurity researchers have uncovered a new and highly sophisticated campaign by the North Korean Advanced Persistent Threat (APT) group Kimsuky, named DEEP#DRIVE. This campaign demonstrates the evolving landscape of cyber threats, making it essential reading for cybersecurity professionals, IT administrators, business leaders, and government agencies. At its core, DEEP#DRIVE exploits widely trusted platforms like Dropbox, […]