May 23, 2023, 2:29 p.m. | richi.jennings@richi.co.uk (Richi Jennings)

ReversingLabs Blog blog.reversinglabs.com



PyPI came under attack from bots at the weekend.
 Bad actors were trying to submit malicious packages with names similar to established dependencies.

attack automated bad bad actors bots dependencies dev & devsecops malicious malicious packages names packages paused pypi secure software blogwatch software supply chain security under weekend

More from blog.reversinglabs.com / ReversingLabs Blog

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Cloud Technical Solutions Engineer, Security

@ Google | Mexico City, CDMX, Mexico

Assoc Eng Equipment Engineering

@ GlobalFoundries | SGP - Woodlands

Staff Security Engineer, Cloud Infrastructure

@ Flexport | Bellevue, WA; San Francisco, CA

Software Engineer III, Google Cloud Security and Privacy

@ Google | Sunnyvale, CA, USA

Software Engineering Manager II, Infrastructure, Google Cloud Security and Privacy

@ Google | San Francisco, CA, USA; Sunnyvale, CA, USA