📰 Python Package Index News
Page 9 - Python Package Index News Today
Fast, Ad-Free News Updates
Stay updated with breaking news from Python Package Index. Real-time updates on events, politics, business and more.
October 14, 2022
The 2020 SolarWinds hack served as an alarming wake-up call about the threat of the software supply chain, spurring rapid shifts in how organizations secure third-party applications. And yet, two years later, open source repositories remain ripe for exploitation.
October 14, 2022
As part of our Awareness Month package spotlighting key pillars to cybersecurity, we examine how organizations can significantly minimize successful tampering of the supply chain by instituting industry and government security standards.
September 21, 2022
Open source holds interest for data center pros for sure. But what happens when third parties get involved? Here are resources to protect your data center.
September 21, 2022
An unpatched flaw in more than 350,000 unique open source repositories leaves software applications vulnerable to exploit. The path traversal-related vulnerability is tracked as CVE-2007-4559.
September 20, 2022
/PRNewswire/ -- Today, ActiveState announced the availability of the ActiveState Artifact Repository, the first artifact repository in the industry to enable...
September 6, 2022
The phishing-as-a-service offering targets accounts from tech giants, and also has connections to PyPI phishing and the Twilio supply chain attack.
September 2, 2022
Researchers have identified a new hacking group "JuiceLedger" behind the first known phishing campaign targeting the Python Package Index.
September 2, 2022
PyPI, the Python Package Index, automatically executes code on the system when developers merely download a package.
September 1, 2022
"JuiceLedger" has escalated a campaign to distribute its information stealer by now going after developers who published code on the widely used Python code repository.