Software Developers Targeted by Malware Hidden in Python Packages

Experts warn that Python developers working on Mac devices have again been targeted by North Korean hackers.

A report from cybersecurity researchers Unit 42 claims that the attacks are, at least to some extent, part of the so-called Operation Dream Job, run by the Lazarus Group, a notorious hacking collective on the payroll of North Korea. It involves creating fake job advertisements and luring software developers into applying for jobs. During the application process, the attackers would trick the developers into downloading and executing malicious packages, giving the attackers access to key resources.