GitLab's Vulnerability Research team has discovered a cryptocurrency theft scheme involving typosquatted Python packages on PyPI targeting the Bittensor ecosystem. The malicious packages were designed to steal funds by masquerading as legitimate staking operations. This post details their analysis of the attack vector, the technical execution of the theft, and the laundering process of the stolen cryptocurrency. It underscores the importance of proactive security measures in the software supply chain.