←back to thread

1208 points jamesberthoty | 1 comments | | HN request time: 0.205s | source
Show context
g42gregory ◴[] No.45265531[source]
Are Python packaging systems like pip exposed to the same risks?

Is anybody looking at this?

replies(3): >>45265655 #>>45265941 #>>45268254 #
1. LPisGood ◴[] No.45265655[source]
Software supply chain attacks are well known and they are a massive hole in the entirety of software infrastructure. As usual with security, no one really cares that much.