News

Open Source software is always trustworthy, right? [Bertus] broke a story about a malicious Python package called “Colourama”. When used, it secretly installs a VBscript that watches th… ...
The attackers chose to trojanize a legitimate Python package called Colorama that has over 150 million monthly downloads because they hoped its ... coloriv, colors-it, pylo-color, and others with ...