SentinelSneak: Malicious PyPI module poses as security software development kit
released on 2022-12-20 @ 01:21:42 PM
A malicious Python package is posing as a software development kit (SDK) for the security firm SentinelOne, researchers at ReversingLabs discovered. The package, SentinelOne has no connection to the noted threat detection firm of the same name and was first uploaded to PyPI, the Python Package Index, on Dec 11, 2022.