North Korea-linked APT group Gleaming Pisces is distributing a new malware called PondRAT through tainted Python packages.The campaign aims to compromise developers' systems and supply chain vendors.PondRAT is closely related to the macOS remote access tool POOLRAT, previously distributed by Gleaming Pisces.The weaponization of legitimate-looking Python packages poses a significant risk to organizations.