# Ultralytics AI Pwn Request Supply Chain Attack

DevFeed: [Ultralytics AI Pwn Request Supply Chain Attack](<https://devfeed.tech/articles/ultralytics-ai-pwn-request-supply-chain-attack-8222.md>)

Original publisher: [Read original article](<https://snyk.io/blog/ultralytics-ai-pwn-request-supply-chain-attack/>)

Author: Stephen Thoemmes

Published: 2024-12-11T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [Malware](<https://devfeed.tech/topics/malware.md>), [GitHub Actions](<https://devfeed.tech/topics/github-actions.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Cryptocurrency](<https://devfeed.tech/topics/cryptocurrency.md>), [GitHub](<https://devfeed.tech/topics/github.md>), [Google](<https://devfeed.tech/topics/google.md>), [comfyui](<https://devfeed.tech/topics/comfyui.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [code-security](<https://devfeed.tech/tags/code-security.md>), [comfyui](<https://devfeed.tech/tags/comfyui.md>), [cryptocurrency](<https://devfeed.tech/tags/cryptocurrency.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devrel](<https://devfeed.tech/tags/devrel.md>), [devsecops](<https://devfeed.tech/tags/devsecops.md>), [github](<https://devfeed.tech/tags/github.md>), [github-actions](<https://devfeed.tech/tags/github-actions.md>), [google](<https://devfeed.tech/tags/google.md>), [malware](<https://devfeed.tech/tags/malware.md>), [open-source-security](<https://devfeed.tech/tags/open-source-security.md>), [pypi](<https://devfeed.tech/tags/pypi.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk-container](<https://devfeed.tech/tags/snyk-container.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>), [ultralytics](<https://devfeed.tech/tags/ultralytics.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

## AI overview

The article analyzes the two-phase Ultralytics supply chain attack in December 2024. Attackers published malicious PyPI versions containing cryptocurrency-mining malware, first through compromised GitHub Actions workflows and later by publishing directly to PyPI. The article presents the release timeline, detection signals such as unusual CPU usage and repository discrepancies, and guidance for detecting exposure and securing projects.

## Source excerpt

Discover the details of the Ultralytics AI supply chain attack, a sophisticated two-phase breach targeting PyPI releases and GitHub Actions with cryptocurrency mining malware. Learn how to detect exposure, secure your projects, and protect against future vulnerabilities using tools like Snyk.