Fake DeepSeek AI Packages on PyPI Steal Developer Credentials

Threat actors exploit the popularity of DeepSeek by publishing infostealing malware disguised as developer tools on the Python Package Index. The malicious packages steal API keys and credentials before exfiltrating the data to an attacker-controlled server.

Threat actors exploit the recent popularity of DeepSeek by publishing malicious infostealer packages on the Python Package Index (PyPI). The malicious packages, named "deepseeek" and "deepseekai," impersonate legitimate developer tools for the Chinese AI startup to trick unsuspecting programmers into downloading them.

Once executed on a developer's machine, the malicious payload steals sensitive user data and environment variables. This stolen information includes highly valuable API keys, database credentials, and infrastructure access tokens, which are then quietly exfiltrated to a command and control server using the Pipedream automation platform.

Positive Technologies researchers discover the campaign and immediately report the threat to PyPI officials. Although the platform acts quickly to quarantine and delete the packages, 222 developers download the malware before its removal, with the majority of the victims located in the United States.

Read More at the original source →