New PondRAT Malware Hidden in Python Packages Targets Software Developers
As part of an ongoing campaign, North Korean-affiliated threat actors have been seen deploying poisoned Python packages to spread a new piece of malware known as PondRAT.
New research from Palo Alto Networks Unit 42 indicates that PondRAT is thought to be a more subdued form of POOLRAT, also known as SIMPLESEA. POOLRAT is a well-known macOS backdoor that was used in attacks linked to the 3CX supply chain hack last year and has previously been linked to the Lazarus Group.
Some of these assaults are a part of an ongoing cyberattack effort known as Operation Dream employment, in which potential victims are tricked into downloading malware by luring them in with attractive employment offers read more about New PondRAT Malware Hidden in Python Packages Targets Software Developers.
Get...

