Malware Delivered to PyTorch Users in Supply Chain Attack

malware-delivered-to-pytorch-users-in-supply-chain-attack

Last week’s nightly builds of the open source machine learning framework PyTorch were injected with malware following a supply chain attack.

Now part of the Linux Foundation umbrella, PyTorch is based on the Torch library and is used for applications in computer vision and natural language processing fields.

read more

New ‘RisePro’ Infostealer Increasingly Popular Among Cybercriminals

new-‘risepro’-infostealer-increasingly-popular-among-cybercriminals

A recently identified information stealer named ‘RisePro’ is being distributed by pay-per-install malware downloader service ‘PrivateLoader’, cyberthreat firm Flashpoint reports.

Written in C++, RisePro harvests potentially sensitive information from the compromised machines and then attempts to exfiltrate it as logs.

read more