home.social

#softwarecompromise — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #softwarecompromise, aggregated by home.social.

fetched live
  1. Malicious Code Infiltrates Python Package Index

    A recent supply-chain attack on a popular Python package has raised a critical question: how much trust do you really have in the software that quietly powers your work? A malicious .pth file hidden in the litellm package version 1.82.8 can automatically execute malicious code on every Python startup.

    osintsights.com/malicious-code

    #SupplyChain #PythonPackageIndex #MaliciousCode #EmergingThreats #SoftwareCompromise