PyPI Inundated by Malicious Typosquatting Campaign
released on 2024-03-29 @ 11:47:41 AM
Check Point CloudGuard identified a typosquatting campaign on PyPI, comprising over 500 malicious packages.
Installation of these packages exposed users to potential theft of their personally identifiable information (PII) and the installation of malware on their systems. Upon detection, we promptly notified PyPI about these packages, leading to their swift removal by the PyPI administrative team.