Two fake spellchecker packages on PyPI hid a Python RAT in dictionary files, activating malware on import in version 1.2.0.
ClickFix uses fake CAPTCHAs and a signed Microsoft App-V script to deploy Amatera stealer on enterprise Windows systems.
In the immediate term, Gen. Zhang’s removal and the inevitable chaos this will cause within the PLA’s leadership, “probably ...