Two fake spellchecker packages on PyPI hid a Python RAT in dictionary files, activating malware on import in version 1.2.0.
The dataset allegedly includes names, email addresses, postal addresses, phone numbers, and account-related details.
A source trapped inside an industrial-scale scamming operation contacted me, determined to expose his captors’ crimes—and ...