Posted inCybersecurity News
PyPI package chimera-sandbox-extension found to be malicious – harvests AWS, CI/CD, and macOS data.
The chimera-sandbox-extensions package has been found to be a malicious Python package. It masquerades as a helper module for the Chimera Sandbox environment but was designed to steal sensitive information from targeted systems, particularly those in corporate and cloud environments.