Inferred
Lightning-AI disclosed that PyTorch Lightning versions 2.6.2 and 2.6.3 on PyPI shipped with credential-harvesting malicious code. The GitHub source repository was untouched — exposing a gap where the published PyPI artifact diverged from clean source code. In this episode: * The 42-minute window between release and PyPI quarantine, and what Lightning-AI's incident post and security advisory disclosed * How the credential-harvesting payload spawned on import and abused the GitHub GraphQL API to inject backdoors into victim repositories * Why a legitimate, trusted release — drawing 7.8M monthly downloads — defeats the name-based defenses developers rely on for typosquatted packages * How Aikido Security, Sonatype, and Semgrep's divergent payload measurements fragment the indicators of compromise defenders distribute across tooling * What Semgrep links to a tracked multi-package campaign, and why TeamPCP's LAPSUS$ affiliation claim remains unverified Topics: supply-chain security, PyPI, malware, credential harvesting, incident response, Lightning-AI Get Inferred in your inbox: https://inferredresearch.com [https://inferredresearch.com]
29 episodios
Comentarios
0Sé la primera persona en comentar
¡Regístrate ahora y forma parte de la comunidad de Inferred!