Home / May 01, 2026 / Story
0
#3 The Hacker News general April 30, 2026 at 16:31 UTC

PyTorch Lightning Compromised in PyPI Supply Chain Attack to Steal Credentials

By [email protected] (The Hacker News)

AI Summary

PyTorch Lightning versions 2.6.2 and 2.6.3 published on April 30, 2026 were compromised with credential-stealing malware in a supply chain attack targeting the popular Python machine learning framework. The malicious packages were pushed to PyPI to conduct credential theft against developers.

Relevance score: 92.0/100

# More from May 01