Post #4269997
2026-07-31 07:28 UTC
@BleepingComputer@infosec.exchange Hi, that's an interesting article, thank you! I don't understand this bit, however:
During that window, 15 real systems downloaded and executed it. One belonged to a security company that routinely installs packages from PyPI and scans them for malware, a workflow that treats registry contents as safe to run.
How is it possible that a security company treats packages that it intends to scan for malware as safe to run? This doesn't make sense to me...
Replies (0)
No replies.