New PyPI Supply Chain Attack Technique Puts 22,000 Packages at Risk

A newly discovered PyPI hijack technique called “Revival Hijack” has been exploited in the wild, posing a significant threat to thousands of Python packages. Identified by JFrog’s security research team, the method takes advantage of a loophole in the PyPI software registry that allows attackers to re-register package names that have been removed by their […]

This article has been indexed from Information Security Buzz

Read the original article: