DeFi Daily News
Friday, April 3, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home Other News Tech

rewrite this title Popular Python AI library hacked to deliver malware

Sead Fadilpašić by Sead Fadilpašić
December 9, 2024
in Tech
0 0
0
rewrite this title Popular Python AI library hacked to deliver malware
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

A PyPI package for an AI model was compromised and used to deliver malwareVictims were getting XMRig, a popular cryptominer, installedThe attack has since been addressed, but users warned to be on their guard

Ultralytics YOLO11, an AI model for computer vision and object detection, was compromised in an apparent supply chain attack, and used to deploy malware on victim devices.

The attack was confirmed by the company’s founder, who also said the incident was remedied, and the malicious version pulled – however, it seems that new malicious versions have popped up again.

YOLO11 (short for You Only Look Once), is an AI model designed for real-time computer vision tasks, such as identifying objects, analyzing images, and detecting poses. The service is quite popular, being starred more than 30,000 times, forked on GitHub more than 6,000 times, and counts hundreds of thousands of downloads a day.

Newer attacks

As an open source solution, YOLO11 was also available for download on PyPI, one of the world’s biggest Python package repositories.

There, an unidentified threat actor recently broke into the account and uploaded two versions – 8.3.41, and 8.3.42. Those who updated to these versions, either directly or through a dependency, ended up with a cryptocurrency miner on their devices.

The miner installed is called XMRig, and it is by far the most popular cryptojacker (a “hijacker” malware that mines crypto) out there. XMRig is known for generating Monero (XMR), a privacy-oriented currency that is difficult to trace.

Ultralytics founder and CEO Glenn Jocher confirmed the attack, and said it was addressed: “We confirm that Ultralytics versions 8.3.41 and 8.3.42 were compromised by a malicious code injection targeting cryptocurrency mining. Both versions have been immediately removed from PyPI,” Jocher posted to GitHub. “We have released 8.3.43 which addresses this security issue. Our team is conducting a full security audit and implementing additional safeguards to prevent similar incidents.”

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

However, over the weekend BleepingComputer said there were user reports of even newer versions – 8.3.45, and 8.3.46, who were “trojanized”. At press time, GitHub shows 8.3.48 as the newest version.

Via BleepingComputer

You might also like

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website [http://defi-daily.com] and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: DeliverHackedlibrarymalwarePopularPythonrewritetitle
ShareTweetShare
Previous Post

Stock momentum signals have been increasing: Strategist

Next Post

WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

Next Post
WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title Google Unveils Flow: An All-in-One AI Video Editing Tool That Can Do It All!

rewrite this title Google Unveils Flow: An All-in-One AI Video Editing Tool That Can Do It All!

May 21, 2025
rewrite this title 10 Tools That Will Give Crypto Traders A Predictive Edge In 2026

rewrite this title 10 Tools That Will Give Crypto Traders A Predictive Edge In 2026

December 14, 2025
rewrite this title How to Get Top Solana Token Holders – Moralis APIs

rewrite this title How to Get Top Solana Token Holders – Moralis APIs

May 14, 2025
rewrite this title and make it good for SEO Hyperliquid Deep Dive: Understand HYPE and HLP Model

rewrite this title and make it good for SEO Hyperliquid Deep Dive: Understand HYPE and HLP Model

April 3, 2025
Vance, Trump’s VP Choice, Advocates for Stringent China Policy: Analyst Insights – Reuters

Vance, Trump’s VP Choice, Advocates for Stringent China Policy: Analyst Insights – Reuters

July 16, 2024
The Unique Artistry of Ethereum Card Game ‘The Lost Glitches’ Shines as Open Beta Launches on Epic Store

The Unique Artistry of Ethereum Card Game ‘The Lost Glitches’ Shines as Open Beta Launches on Epic Store

August 15, 2024
rewrite this title Bitcoin Breakdown Confirmed: Bearish Continuation Looms Despite Short-Term Bounce Setup

rewrite this title Bitcoin Breakdown Confirmed: Bearish Continuation Looms Despite Short-Term Bounce Setup

March 28, 2026
rewrite this title “I was just hanging on”: Michael McDowell admits he needed more than talent to stay afloat in NASCAR

rewrite this title “I was just hanging on”: Michael McDowell admits he needed more than talent to stay afloat in NASCAR

March 28, 2026
rewrite this title ‘Malcolm In The Middle’ Team On The Possibility Of A Full-Fledged Reboot: “A Whole New Set Of Characters And Circumstances That Are Ripe”

rewrite this title ‘Malcolm In The Middle’ Team On The Possibility Of A Full-Fledged Reboot: “A Whole New Set Of Characters And Circumstances That Are Ripe”

March 28, 2026
rewrite this title Today's NYT Strands Hints, Answer and Help for March 29 #756 – CNET

rewrite this title Today's NYT Strands Hints, Answer and Help for March 29 #756 – CNET

March 28, 2026
rewrite this title Arsenal Women 5-2 Tottenham Women: Alessia Russo hat-trick keeps Gunners in Women’s Super League title fight

rewrite this title Arsenal Women 5-2 Tottenham Women: Alessia Russo hat-trick keeps Gunners in Women’s Super League title fight

March 28, 2026
He Messed Up Bad, Now His Wife Doesn’t Trust Him

He Messed Up Bad, Now His Wife Doesn’t Trust Him

March 28, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.