DeFi Daily News
Tuesday, July 1, 2025
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home Other News Tech

rewrite this title Popular Python AI library hacked to deliver malware

Sead Fadilpašić by Sead Fadilpašić
December 9, 2024
in Tech
0 0
0
rewrite this title Popular Python AI library hacked to deliver malware
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

A PyPI package for an AI model was compromised and used to deliver malwareVictims were getting XMRig, a popular cryptominer, installedThe attack has since been addressed, but users warned to be on their guard

Ultralytics YOLO11, an AI model for computer vision and object detection, was compromised in an apparent supply chain attack, and used to deploy malware on victim devices.

The attack was confirmed by the company’s founder, who also said the incident was remedied, and the malicious version pulled – however, it seems that new malicious versions have popped up again.

YOLO11 (short for You Only Look Once), is an AI model designed for real-time computer vision tasks, such as identifying objects, analyzing images, and detecting poses. The service is quite popular, being starred more than 30,000 times, forked on GitHub more than 6,000 times, and counts hundreds of thousands of downloads a day.

Newer attacks

As an open source solution, YOLO11 was also available for download on PyPI, one of the world’s biggest Python package repositories.

There, an unidentified threat actor recently broke into the account and uploaded two versions – 8.3.41, and 8.3.42. Those who updated to these versions, either directly or through a dependency, ended up with a cryptocurrency miner on their devices.

The miner installed is called XMRig, and it is by far the most popular cryptojacker (a “hijacker” malware that mines crypto) out there. XMRig is known for generating Monero (XMR), a privacy-oriented currency that is difficult to trace.

Ultralytics founder and CEO Glenn Jocher confirmed the attack, and said it was addressed: “We confirm that Ultralytics versions 8.3.41 and 8.3.42 were compromised by a malicious code injection targeting cryptocurrency mining. Both versions have been immediately removed from PyPI,” Jocher posted to GitHub. “We have released 8.3.43 which addresses this security issue. Our team is conducting a full security audit and implementing additional safeguards to prevent similar incidents.”

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

However, over the weekend BleepingComputer said there were user reports of even newer versions – 8.3.45, and 8.3.46, who were “trojanized”. At press time, GitHub shows 8.3.48 as the newest version.

Via BleepingComputer

You might also like

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website [http://defi-daily.com] and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: DeliverHackedlibrarymalwarePopularPythonrewritetitle
ShareTweetShare
Previous Post

Stock momentum signals have been increasing: Strategist

Next Post

WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

Next Post
WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title SEI Leads Crypto Market With 43% Weekly Surge – alt=

rewrite this title SEI Leads Crypto Market With 43% Weekly Surge – $0.5 Reclaim In The Horizon?

June 28, 2025
rewrite this title High Season, High Stakes: Navigating Summer Risks in Property Management

rewrite this title High Season, High Stakes: Navigating Summer Risks in Property Management

June 27, 2025
They’re Going ALL IN on Crypto: This is What Wall St is Buying!

They’re Going ALL IN on Crypto: This is What Wall St is Buying!

June 25, 2025
rewrite this title ‘FIFA Rivals’ Review: Should You Play This NFT Soccer Game? – Decrypt

rewrite this title ‘FIFA Rivals’ Review: Should You Play This NFT Soccer Game? – Decrypt

June 28, 2025
rewrite this title with good SEO Bitcoin Could Explode On Bessent’s 0 Billion Deregulation Shock

rewrite this title with good SEO Bitcoin Could Explode On Bessent’s $250 Billion Deregulation Shock

May 28, 2025
Mastering Crypto Mining: A Step-By-Step Guide

Mastering Crypto Mining: A Step-By-Step Guide

September 12, 2024
rewrite this title Deadspin | Agents: Dolphins deal with Giants for retired TE Darren Waller

rewrite this title Deadspin | Agents: Dolphins deal with Giants for retired TE Darren Waller

July 1, 2025
rewrite this title Coinbase Sags After Dual Blow of Supreme Court Decision, Ark Share Sale – Decrypt

rewrite this title Coinbase Sags After Dual Blow of Supreme Court Decision, Ark Share Sale – Decrypt

July 1, 2025
rewrite this title What is Solana (SOL)? How It Works, What It Does, and Why It’s So Fast

rewrite this title What is Solana (SOL)? How It Works, What It Does, and Why It’s So Fast

July 1, 2025
rewrite this title Bitget Wallet Partners With Mastercard And Immersve To Launch Zero-Fee Crypto Card

rewrite this title Bitget Wallet Partners With Mastercard And Immersve To Launch Zero-Fee Crypto Card

July 1, 2025
rewrite this title New York Man Accused of Converting .7M Into Bitcoin

rewrite this title New York Man Accused of Converting $1.7M Into Bitcoin

July 1, 2025
rewrite this title The best Prime Day robot vacuum deals for 2025

rewrite this title The best Prime Day robot vacuum deals for 2025

July 1, 2025
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.