{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreia6wpfw4ufswqsw4nkyiuthrotbi2a4hvfpst7wudfmmf46ygfpiy",
"uri": "at://did:plc:z3a345rn6njmxg2o5lxmj3en/app.bsky.feed.post/3mkj2fiu75iv2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreib5qyovzpdtldmm4bct4jqwg4dyggg24o43uv32jpd6sfd2xxmgqq"
},
"mimeType": "image/jpeg",
"size": 207123
},
"path": "/news/security/pypi-package-with-11m-monthly-downloads-hacked-to-push-infostealer/",
"publishedAt": "2026-04-27T15:17:37.000Z",
"site": "https://www.bleepingcomputer.com",
"tags": [
"Security"
],
"textContent": "An attacker pushed a malicious version of the popular elementary-data package Python Package Index (PyPI) to steal sensitive developer data and cryptocurrency wallets. [...]",
"title": "PyPI package with 1.1M monthly downloads hacked to push infostealer"
}