Hackernews posts about PyPI
PyPI is the Python Package Index, a repository of open-source software packages for the Python programming language.
- Listen to PyPI (miketheman.github.io)
- PyPI has completed its second audit (blog.pypi.org)
- PyPI package with 1.1M monthly downloads hacked to push infostealer (www.bleepingcomputer.com)
- Intercom-client NPM package and lightning PyPI packages compromised (opensourcemalware.com)
- TeamPCP strikes again: Xinference (v2.6.0-2.6.2) PyPI package compromised (research.jfrog.com)
- Show HN: I built a PyPI watchdog that tests whether packages work (sovereignmail.org)
- Lirantal/PyPI-security-best-practices (github.com)
- Show HN: Super ISO Updater (github.com)
- I just beat AI traders with math (pypi.org)
- AgentCheck – Pytest for AI Agents (pypi.org)