🚨 Supply chain attacks are escalating...
A widely used AI dev tool, PyTorch Lightning, was compromised on PyPI and turned into a credential stealer.
→ Malicious code runs on import
→ No user action needed
→ Credentials silently stolen
Read: https://thehackernews.com/2026/04/pytorch-lightning-compromised-in-pypi.html