Google Colab is a free online tool from Google that lets you write and run Python code directly in your browser.
PyPI, the default platform for Python's package management tools, is warning users of a fresh phishing campaign.
A npm package copying the official 'postmark-mcp' project on GitHub turned bad with the latest update that added a single line of code to exfiltrate all its users' email communication.
The security researchers who discovered the malicious npm package called it the “first malicious MCP in the wild” ...