10 Jan
2023
10 Jan
'23
08:39
On 2023-01-10 08:07, David C. Rankin wrote:
All,
I'm not sure how openSUSE looks at packages or libraries obtained from PyPi, but I've followed a couple of fairly shocking stories in the past two weeks alone related to python malware distributed via packages obtained from PyPi. The Register summarizes in:
An aside: let me suggest that the correct link is: <https://www.theregister.com/2023/01/09/pypi_aws_malware_key/> Ie, delete the tracking section after the "?". -- Cheers / Saludos, Carlos E. R. (from 15.4 x86_64 at Telcontar)