Malicious Python packages spread BlazeStealer malware

Eight new Python packages masquerading as obfuscation tools have been used to facilitate the distribution of the BlazeStealer malware since January, The Hacker News reports. Installation of the malicious packages immediately executes BlazeStealer, which then retrieves an external payload and runs a Discord bot to allow total device compromise, enabling attackers to exfiltrate browser-stored credentials and screenshots, perform file encryption, conduct arbitrary command execution, and disable Microsoft Defender, a report from Checkmarx revealed.

Source: SC Magazine

 


Date:

Categorie(s):