
The Python Package Index (PyPI) has temporarily halted new user sign-ups and project creation due to a surge of malicious package uploads targeting developers. This move comes after a malware upload campaign prompted PyPI to take action, affecting over 170,000 users. The concern arises from the method of continuously exfiltrating screen captures from industrial equipment, raising cyberespionage concerns.

A malware upload campaign prompted the Python Package Index, aka @pypi, to temporarily suspend new user registrations and new project creations on March 28. #cybersecurity #infosec #ITsecurity https://t.co/bnWfbQToO1
PyPI Halts Sign-Ups Amid Surge of Malicious Package Uploads Targeting Developers https://t.co/3LURy5RLtf
Over 170K Users Affected by Attack Using Fake Python Infrastructure : https://t.co/JwoO3pO5f3 https://t.co/wBO3Q1qOkS