Home / Mar 16, 2026 / Story
1
#1 SecurityWeek general March 16, 2026 at 11:51 UTC

ForceMemo: Python Repositories Compromised in GlassWorm Aftermath

By Ionut Arghire

AI Summary

Hundreds of GitHub accounts were compromised using credentials stolen during the VS Code GlassWorm campaign, leading to the ForceMemo attack that targeted Python repositories. This supply chain attack demonstrates how initial credential theft can cascade into broader repository compromises, threatening the integrity of open-source Python packages that security teams rely on.

Relevance score: 85.0/100

# More from March 16