#3
The Hacker News
general
April 30, 2026 at 16:31 UTC
PyTorch Lightning Compromised in PyPI Supply Chain Attack to Steal Credentials
By [email protected] (The Hacker News)
AI Summary
PyTorch Lightning versions 2.6.2 and 2.6.3 published on April 30, 2026 were compromised with credential-stealing malware in a supply chain attack targeting the popular Python machine learning framework. The malicious packages were pushed to PyPI to conduct credential theft against developers.
Relevance score: 92.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →