https://cloudsmith.com/navigator/pypi/readlif
readlif (0.6.6) - pypi Package Quality | Cloudsmith Navigator
Learn all about the quality, security, and current maintenance status of readlif using Cloudsmith Navigator
pypi packagecloudsmith navigatorquality
https://cyberwebspider.com/cyber-security-news/new-weaponized-pypi-package-attacking-developers-to-steal-source-code/
New Weaponized PyPI Package Attacking Developers to Steal Source Code - Cyber Web Spider Blog - News
May 15, 2025 - A newly found malicious Python bundle, solana-token, has been weaponized to steal supply code and delicate secrets and techniques from builders engaged on
pypi packagesource codeblog newsweaponizedattacking
https://market.near.ai/jobs/bd8f7512-fda2-40ff-9db3-6209514f2d12
PyPI Package - near-mocks - Agent Market
Build a testing package: near-mocks. Deliverables: 1. Testing utilities 2. pytest integration 3. Documentation 4. Published to PyPI Success Metric: 20... |...
pypi packagenearmocksagentmarket
https://www.cnews.ru/book/Python_PyPI_-_Python_Package_Index
Python PyPI - Python Package Index - CNews
Python PyPI - Python Package Index
pypi packagepythonindexcnews
https://github-wiki-see.page/m/50onRed/xgboost/wiki/Creating-pypi-package
Creating pypi package - 50onRed/xgboost GitHub Wiki
pypi packagegithub wikicreatingxgboost
https://www.nlcyber.com/all/news/xinference-pypi-package-compromised-with-malicious-code-to-steal-cloud-credentials
Xinference PyPI Package Compromised With Malicious Code to Steal Cloud Credentials
A recent supply chain attack has targeted the popular Python package Xinference, after malicious versions were uploaded to the Python Package Index (PyPI), putt
pypi packagemalicious codecompromisedstealcloud
https://www.sonatype.com/blog/compromised-litellm-pypi-package-delivers-multi-stage-credential-stealer?__hstc=45788219.db27ce45835e44373dd2216ff4b64797.1777935133485.1777935133485.1777935133485.1&__hssc=45788219.1.1777935133485&__hsfp=033d257f6927cfeadcb5ae0e9086415b
Compromised litellm PyPI Package Exposes AI Systems
Compromised litellm PyPI versions delivered a multi-stage credential stealer, exposing AI pipelines and cloud secrets in a targeted supply chain attack.
pypi packageai systemscompromisedlitellmexposes
https://blog.netmanageit.com/pypi-package-with-1-1m-monthly-downloads-hacked-to-push-infostealer/
PyPI package with 1.1M monthly downloads hacked to push infostealer
Apr 27, 2026 - An attacker pushed a malicious version of the popular elementary-data package Python Package Index (PyPI) to steal sensitive developer data and cryptocurrency...
pypi packagemonthly downloadshackedpushinfostealer
https://nationalcybersecurity.com/pypi-package-with-1-1m-monthly-downloads-hacked-to-push-infostealer-hacking-cybersecurity-infosec-comptia-pentest-hacker/
PyPI package with 1.1M monthly downloads hacked to push infostealer | #hacking | #cybersecurity |...
Apr 27, 2026 - [ad_1] An attacker pushed a malicious version of the popular elementary-data package Python Package Index (PyPI) to steal sensitive developer data and...
pypi packagemonthly downloadshackedpushinfostealer
https://logicity.in/en/blog/pypi-package-with-1-1m-downloads-hacked-to-push-infostealer
PyPI Package With 1.1M Downloads Hacked to Push Infostealer | Logicity
Apr 27, 2026 - Attackers exploited a GitHub Actions script injection flaw to push a malicious version of elementary-data, a popular Python observability tool. The backdoored r
pypi packagedownloadshackedpushinfostealer
https://digitrendz.blog/trending-news/155726/malware-hidden-in-backdoored-telnyx-pypi-package/
Malware hidden in backdoored Telnyx PyPI package | DigitrendZ
Mar 29, 2026 - A malicious version of the Telnyx SDK Python package was uploaded to PyPI on March 27, 2026, by the threat actor TeamPCP, who backdoored the legitimate code.
pypi packagemalwarehiddentelnyx
https://advisories.gitlab.com/pypi/guarddog/CVE-2022-23530/
GuardDog vulnerable to arbitrary file write when scanning a specially-crafted remote PyPI package |...
CVE-2022-23530 GuardDog vulnerable to arbitrary file write when scanning a specially-crafted remote PyPI package: Unsafe extracting using...
pypi packageguarddogvulnerablearbitraryfile