Two fake spellchecker packages on PyPI hid a Python RAT in dictionary files, activating malware on import in version 1.2.0.
Hackers are using AI-generated video calls to impersonate trusted contacts and trick crypto workers into installing malware.