threat-intel
Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI
Threat actors have compromised two legitimate MemTensor packages on npm and PyPI, injecting a Go-based credential-stealing payload called ‘sckit’. This allows them to harvest sensitive data from various sources, includin…
High
