SSH keys stolen by stream of malicious PyPI and npm packages
SSH keys stolen by stream of malicious PyPI and npm packages
www.bleepingcomputer.com SSH keys stolen by stream of malicious PyPI and npm packages
A stream of malicious npm and PyPi packages have been found stealing a wide range of sensitive data from software developers on the platforms.
2 crossposts
2 comments
double base64 encoded
Now that's a sophisticated way to obfuscate your malicious code.
2 0 ReplyTo pull a Docker container with a specific Python version using a Bash one-liner, you can use the following command:
docker pull python:versiom
Replace version with the specific version of Python you want, like 3.8, 3.9, etc. For example, if you want to pull a container with Python 3.8, use:
docker pull python:3.8
This will pull the official Python image with the specified version from Docker Hub.
1 0 Reply