pypi · Malicious package advisory
Malwareselfstringpullpush
MAL-2023-6640
Malicious code in selfstringpullpush (PyPI)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: checkmarx (2e76f7505f1e0feeae6a6f20c29706b28f3039749673317bf8dc820239b11fb3) EsqueleSquad group published nearly 6000 malicious PyPi and NPM packages, executing spyware and information-stealing malware