Gbhackers
Malicious sympy-dev Package Targets SymPy Users with Cryptomining Malware
First seen 22 Jan 2026, 21:42 UTC
•


•33.6
Export
Article Content
Browse articles
A malicious package named sympy-dev has been identified on the Python Package Index (PyPI), impersonating the popular SymPy library. This package employs typosquatting techniques to deliver cryptomining malware, affecting millions of users who download the legitimate SymPy library, which sees tens of millions of downloads monthly.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
Date unknown
Malicious sympy-dev package discovered on PyPI
Recent
Malicious package delivers cryptomining malware
Date unknown
SymPy community alerted about the impersonation
More articles in this cluster
Continue Reading
Critical Zero-Day Vulnerability CVE-2026-20182 Exploited in Cisco SD-WAN Systems
Operation Endgame Disrupts Evil Corp's SocGholish Malware Network
China-Nexus Hackers Target Hospitals and Governments with TriBack Loader Malware
ComfyUI Servers Compromised for Cryptomining and Botnet Operations
PowMix Botnet Targets Czech Organizations with Malicious LNK Files
Vidar Infostealer Targets SMBs with Malvertising Campaign