Gbhackers Malicious sympy-dev Package Targets SymPy Users with Cryptomining Malware
Article Content
Browse articles
A malicious package named sympy-dev has been identified on the Python Package Index (PyPI), impersonating the popular SymPy library. This package employs typosquatting techniques to deliver cryptomining malware, affecting millions of users who download the legitimate SymPy library, which sees tens of millions of downloads monthly.
Ask AI about this cluster
Answers cite the sources they use
Updated 212d ago How this analysis works
Timeline
Date unknown
Malicious sympy-dev package discovered on PyPI
Recent
Malicious package delivers cryptomining malware
Date unknown
SymPy community alerted about the impersonation
More articles in this cluster (4)
Following this threat?
Track XMRig in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Human Attacker Exploits Marimo RCE at Machine Speed A human attacker exploited CVE-2026-39987, a pre-authentication remote code execution vulnerability in Marimo notebooks, achieving a rapid transition from an open WebSocket to SSH access in just eight seconds. The attacker utilized a hand-rolled Python toolkit, bypassing detection mechanisms designed for AI-driven…