SecOpsNews / news

RSS items as GitHub Issues for the discerning engineering leader or security professional
MIT License
44 stars 0 forks source link

[HackerNews] PyPI Attack: ChatGPT, Claude Impersonators Deliver JarkaStealer via Python Libraries #36169

Open github-actions[bot] opened 9 hours ago

github-actions[bot] commented 9 hours ago

Cybersecurity researchers have discovered two malicious packages uploaded to the Python Package Index (PyPI) repository that impersonated popular artificial intelligence (AI) models like OpenAI ChatGPT and Anthropic Claude to deliver an information stealer called JarkaStealer. The packages, named gptplus and claudeai-eng, were uploaded by a user named "Xeroline" in November 2023, attracting

https://thehackernews.com/2024/11/pypi-attack-chatgpt-claude.html