• Fri. Sep 5th, 2025

JuiceLedger

  • Home
  • PyPI phishing campaign: threat actor JuiceLedger pivots from fake apps to supply chain attacks

PyPI phishing campaign: threat actor JuiceLedger pivots from fake apps to supply chain attacks

SentinelLabs, in collaboration with Checkmarx, has been tracking the activity and evolution of a threat actor dubbed “JuiceLedger”. In early 2022, JuiceLedger began running relatively low-key campaigns, spreading fraudulent Python…