#legacy-python-packages

[ follow ]
Information security
fromThe Hacker News
4 hours ago

Legacy Python Bootstrap Scripts Create Domain-Takeover Risk in Multiple PyPI Packages

Legacy zc.buildout bootstrap scripts fetch and execute installers from the abandoned python-distribute[.]org domain, enabling potential PyPI supply-chain compromise via domain takeover.
[ Load more ]