🚀 Day Two of Socket Launch Week! We’re launching @socket.dev Certified Patches—a new way to eliminate vulnerabilities instantly without upgrading your package versions or pulling in risky new code. Tiny, human-reviewed fixes that give teams a clean path to zero exploitable CVEs.
🚨 The Socket Research team has discovered a malicious PyPI package stealing Ethereum private keys by exfiltrating them through blockchain transactions via the Polygon RPC. socket.dev/blog/new-pyp... #Python #Ethereum
New PyPI Malware ‘set-utils’ Exfiltrates Ethereum Private Ke...
Malicious PyPI package ‘set-utils’ steals Ethereum private keys by exfiltrating them through blockchain transactions via the Polygon RPC.
socket.dev