Poison packages – “Supply Chain Risks” user hits Python community with 4000 fake modules

To this “researcher”, even a job not worth doing was worth overdoing. Here’s what you can learn from the incident…
This post appeared first on Naked Security Blog by Sophos
Author: Paul Ducklin