Wednesday, December 18, 2024
HomePythonPython is Now World's Most Used Coding Language By Hackers to Create...

Python is Now World’s Most Used Coding Language By Hackers to Create Cyber Weapons

Published on

SIEM as a Service

Python is known for its simplicity and flexibility, unlike other languages, Python becomes the most common vector for launching exploit attempts.

The Python programming language was discovered by Dutch computer scientist in 1989, the economist recently said that python to become a soon as a most used language around the globe.

Python Hacking Tool Nore Popular 

According to Imperva report more than 20% of GitHub repositories that implement an attack tool / exploit PoC are written in Python.

- Advertisement - SIEM as a Service

For web-based attacks, Python modules such as Urllib and Python requests are the most popular. Around 89% of attacks are based on the Python requests and 10.69% with Urllib and Urllib2 requests.

Unlike other clients, in Python, we see a host of different attack vectors and the usage of known exploits. Hackers, like developers, enjoy Python’s advantages which makes it a popular python hacking tool, reads Imperva report.

With Github under every security-related topic majority of the repositories written in Python, including popular tools such as w3af, Sqlmap, PDFMiner, and infamous AutoSploit tool.

According to Imperva analysis of their security incidents, more than 25% of the of the clients were from Python-based tools used by malicious actors, making it the most common vector for launching exploit attempts.

“When examining the use of Python in attacks against sites we protect, the result was unsurprising – a large chunk, up to 77%, of the sites were attacked by a Python-based tool, and in over a third of the cases a Python-based tool was responsible for the majority of daily attacks.”

Python used extensively in making a popular tool for implementing known exploits and python hacking tool, also it used to target specific applications and frameworks such as Struts, WordPress, Joomla, and Drupal.

“Imperva said that two most popular attacks in the last 2 months used CVE-2017-9841 – a PHP based Remote Code Execution (RCE) vulnerability in the PHPUnit framework, and CVE-2015-8562 which is an RCE against the Joomla! Framework.”

Since Python is so widely used by hackers, there is a host of different attack vectors to take into consideration. Python requires minimal coding skills, making it easy to write a script and exploit a vulnerability

Related Read

List of Top Ten Dark Web Activities That Alerts Organizations a Possible Breach by Hackers

Largest Dark Web Marketplace Black Hand Shut Down By Authorities

Hackers Selling Airport Security System Credentials on Dark Web for $10

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

New VIPKeyLogger Via Weaponized Office Documenrs Steals Login Credentials

The VIPKeyLogger infostealer, exhibiting similarities to the Snake Keylogger, is actively circulating through phishing...

INTERPOL Urges to End ‘Pig Butchering’ & Replaces With “Romance Baiting”

INTERPOL has called for the term "romance baiting" to replace "pig butchering," a phrase...

New I2PRAT Malware Using encrypted peer-to-peer communication to Evade Detections

Cybersecurity experts are sounding the alarm over a new strain of malware dubbed "I2PRAT,"...

Earth Koshchei Employs RDP Relay, Rogue RDP server in Server Attacks

 A new cyber campaign by the advanced persistent threat (APT) group Earth Koshchei has...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

Two PyPi Malicious Package Mimic ChatGPT & Claude Steals Developers Data

Two malicious Python packages masquerading as tools for interacting with popular AI models ChatGPT...

Beware Of Malicious Python Packages That Steal Users Sensitive Data

Malicious Python packages uploaded by "dsfsdfds" to PyPI infiltrated user systems by exfiltrating sensitive...

Python Developers Beware! Russian Hackers Targeting You With Malicious Packages

A malicious Python package named "crytic-compilers" was identified on PyPI.Masquerading as a legitimate...