Six malicious packages on PyPI, the Python Package Index, were found installing information-stealing and RAT (remote access trojan) malware while using Cloudflare Tunnel to bypass firewall restrictions for remote access.

bleepingcomputer.com/news/secu

Follow

@ecksmc
How can that be, when UK & US law enforcement also use Cloudflare tunnels to check secure line communications.

Its almost suggesting a suitable case would be to only have wallets on machines that are only used for payment purposes, but then hijacked websites & fake payment gateways so would not work either.

Hardware lock security devices like YubiKeys 2FA appear to be the only real answer, when you consider that cell phone 2FA can be SIM cloned.

Sign in to participate in the conversation

CounterSocial is the first Social Network Platform to take a zero-tolerance stance to hostile nations, bot accounts and trolls who are weaponizing OUR social media platforms and freedoms to engage in influence operations against us. And we're here to counter it.