DeFi Daily News
Tuesday, June 30, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home Other News Tech

rewrite this title Popular Python AI library hacked to deliver malware

Sead Fadilpašić by Sead Fadilpašić
December 9, 2024
in Tech
0 0
0
rewrite this title Popular Python AI library hacked to deliver malware
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

A PyPI package for an AI model was compromised and used to deliver malwareVictims were getting XMRig, a popular cryptominer, installedThe attack has since been addressed, but users warned to be on their guard

Ultralytics YOLO11, an AI model for computer vision and object detection, was compromised in an apparent supply chain attack, and used to deploy malware on victim devices.

The attack was confirmed by the company’s founder, who also said the incident was remedied, and the malicious version pulled – however, it seems that new malicious versions have popped up again.

YOLO11 (short for You Only Look Once), is an AI model designed for real-time computer vision tasks, such as identifying objects, analyzing images, and detecting poses. The service is quite popular, being starred more than 30,000 times, forked on GitHub more than 6,000 times, and counts hundreds of thousands of downloads a day.

Newer attacks

As an open source solution, YOLO11 was also available for download on PyPI, one of the world’s biggest Python package repositories.

There, an unidentified threat actor recently broke into the account and uploaded two versions – 8.3.41, and 8.3.42. Those who updated to these versions, either directly or through a dependency, ended up with a cryptocurrency miner on their devices.

The miner installed is called XMRig, and it is by far the most popular cryptojacker (a “hijacker” malware that mines crypto) out there. XMRig is known for generating Monero (XMR), a privacy-oriented currency that is difficult to trace.

Ultralytics founder and CEO Glenn Jocher confirmed the attack, and said it was addressed: “We confirm that Ultralytics versions 8.3.41 and 8.3.42 were compromised by a malicious code injection targeting cryptocurrency mining. Both versions have been immediately removed from PyPI,” Jocher posted to GitHub. “We have released 8.3.43 which addresses this security issue. Our team is conducting a full security audit and implementing additional safeguards to prevent similar incidents.”

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

However, over the weekend BleepingComputer said there were user reports of even newer versions – 8.3.45, and 8.3.46, who were “trojanized”. At press time, GitHub shows 8.3.48 as the newest version.

Via BleepingComputer

You might also like

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website [http://defi-daily.com] and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: DeliverHackedlibrarymalwarePopularPythonrewritetitle
ShareTweetShare
Previous Post

Stock momentum signals have been increasing: Strategist

Next Post

WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

Next Post
WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

WATCH: NYPD dive team searching for gun used to kill UnitedHealthcare CEO | LiveNOW from FOX

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title Will the Next Bilt Credit Card Please Stand Up? – NerdWallet

rewrite this title Will the Next Bilt Credit Card Please Stand Up? – NerdWallet

March 18, 2025
Baylor QB Sawyer Robertson | Gruden’s QB Class

Baylor QB Sawyer Robertson | Gruden’s QB Class

April 20, 2026
How one terrible trip inspired a tech IPO: Navan Co-Founder

How one terrible trip inspired a tech IPO: Navan Co-Founder

June 15, 2026
rewrite this title ‘My Neighbor Alice’ Launches 100K ALICE Grant Program To Support Web3 Development And Ecosystem Growth

rewrite this title ‘My Neighbor Alice’ Launches 100K ALICE Grant Program To Support Web3 Development And Ecosystem Growth

April 21, 2025
rewrite this title AO Offshores Bulk of Customer Service Jobs to South Africa in Savings Drive – UC Today

rewrite this title AO Offshores Bulk of Customer Service Jobs to South Africa in Savings Drive – UC Today

June 19, 2026
How is the Fed thinking about future interest rate cuts

How is the Fed thinking about future interest rate cuts

July 10, 2024
rewrite this title LIVE – Netherlands v Morocco: Commentary, updates, goals and stats as 2026 World Cup contenders collide

rewrite this title LIVE – Netherlands v Morocco: Commentary, updates, goals and stats as 2026 World Cup contenders collide

June 29, 2026
rewrite this title with good SEO Robert Kiyosaki Admits His Gold Call Was Wrong, Keeps K Target

rewrite this title with good SEO Robert Kiyosaki Admits His Gold Call Was Wrong, Keeps $35K Target

June 29, 2026
rewrite this title A ‘Tremendous Loss’ and a ‘Big Win’: Trump Reacts to Mixed Bag of Supreme Court Rulings

rewrite this title A ‘Tremendous Loss’ and a ‘Big Win’: Trump Reacts to Mixed Bag of Supreme Court Rulings

June 29, 2026
rewrite this title Longtime James Bond casting director on Jacob Elordi, Callum Turner & more as 007

rewrite this title Longtime James Bond casting director on Jacob Elordi, Callum Turner & more as 007

June 29, 2026
rewrite this title Ornith Is the Open-Source Coding Model Built for Agents, Not Humans – Decrypt

rewrite this title Ornith Is the Open-Source Coding Model Built for Agents, Not Humans – Decrypt

June 29, 2026
rewrite this title One of these two creative solutions could end the deadlock between Stars, Jason Robertson

rewrite this title One of these two creative solutions could end the deadlock between Stars, Jason Robertson

June 29, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.