Article 5947N [$] Further analysis of PyPI typosquatting

[$] Further analysis of PyPI typosquatting

by
jake
from LWN.net on (#5947N)
We have looked at the problem ofconfusingly named packages in repositories such as the Python Package Index (PyPI) before. In general,malicious actors create these packages with names that can be mistaken for those oflegitimate packages in the repository in a form of "typosquatting".Since our 2016 article, the problem has not gone away-no surprise-but there has been some recent analysis of it, as well assome efforts to combat it.
External Content
Source RSS or Atom Feed
Feed Location http://lwn.net/headlines/rss
Feed Title LWN.net
Feed Link https://lwn.net/
Reply 0 comments