Supply Chain Incident
ctx PyPI project account takeover
The ctx project on PyPI was taken over and replaced with malicious code that collected environment variables from affected users.
ConfidenceHigh
Evidence LevelResearcher
Attack StageAccount Compromise
Source Artifact DivergenceNo
Affected Packages
Affected Releases
No structured records.
Repositories
No structured records.
Organizations
No structured records.
Maintainers
No structured records.
Threat Actors
No structured records.
Campaigns
No structured records.
Build Systems
No structured records.
Distribution Channels
- PyPI
Compromised Accounts
- ctx PyPI project account
Connected Entities
- ctx Package
- ctx PyPI project account Compromised Account
- PyPI Distribution Channel
References
- Account Takeover and Malicious Replacement of ctx Project Python Security · 2022-05-24