Malicious PyPI Package Aims at Compromising Developer Credentials
Cloud Security, Security Operations JFrog Discovers Multi-Stage Malware Targeting Cloud Infrastructure Prajeet Nair (@prajeetspeaks) • June 17, 2025 Image: Shutterstock JFrog researchers have identified a multi-stage malware embedded in a Python package specifically designed to steal sensitive information from cloud infrastructures. The malicious package, named chimera-sandbox-extensions, was disclosed by the…