Python packages bypassing security with DLL sideloading

Researchers at ReversingLabs have identified Python packages employing DLL sideloading as a method to circumvent security tools. Discovered on January 10, 2024, by Karlo Zanki, a reverse engineer at ReversingLabs, the suspicious packages named NP6HelperHttptest and NP6HelperHttper utilize DLL sideloading, a technique known for discreetly executing code and evading security tool detection. This revelation underscores […]