Two fake spellchecker packages on PyPI hid a Python RAT in dictionary files, activating malware on import in version 1.2.0.
A key-handling defect in the ransomware can permanently lock files by discarding private encryption keys, leaving affected ...