Malicious PyPI Packages Detected: Stealing Keystrokes and Hijacking Accounts
Jai Padhiar
Cloud Security Intern @ Operisoft Technologies Pvt. Ltd. || ISC2 - Certified in Cybersecurity || AWS || Ethical Hacker || Prompt Engineer
Cybersecurity researchers from Fortinet FortiGuard Labs have identified two malicious packages—zebo and cometlogger—on the Python Package Index (PyPI). Before being taken down, these packages were downloaded 118 and 164 times, primarily in the United States, China, Russia, and India.
Key Findings
Zebo
Cometlogger
Recommendations
This incident highlights the importance of vigilance when using open-source repositories. The growing sophistication of malicious packages calls for enhanced security practices and awareness.