PyPI Breach: ChatGPT, Claude Imitators Disseminate JarkaStealer via Python Modules
A pair of malevolent modules have been uncovered by cybersecurity analysts on the Python Package Index (PyPI) platform disguising themselves as renowned AI frameworks such as OpenAI ChatGPT and Anthropic Claude with the objective of distributing a data-extraction tool known as JarkaStealer.
These modules, identified as gptplus and claudeai-eng, were deliberately uploaded by an individual registering as “Xeroline” in the month of November 2023, drawing attention to them.
These modules, identified as gptplus and claudeai-eng, were deliberately uploaded by an individual registering as “Xeroline” in the month of November 2023, drawing attention to them.
