Sonatype shines light on typosquatting ransomware threat in PyPI
https://www.theregister.com/2022/08/03/sonatype_typosquatting/ #python #pypi
The latest packages detected use variations of the spelling of "Requests", a hugely popular HTTP library available via PyPI. Of the project, the description notes: "Requests is one of the most downloaded Python packages today, pulling in around 30M downloads / week – according to GitHub. Requests is currently depended upon by 1,000,000+ repositories."