uv

uv python, astral uv, python package manager, dependency resolution

Feeds to Scour
SubscribedAll
Scoured 134 posts in 9.7 ms

Vulnerability and malware checks in uv

 🐍Python  Content type: Blog

Shai-Hulud Hades PyPI Campaign: 19 Packages Trojanized via Wheel Startup Hooks

 🐍Python  Content type: Blog
socradar.io·

I Replaced Our Commercial Artifact Registry With a Free One After a 5× Renewal Price Hike.

 🐍Python  Content type: Blog
medium.com
·

Glone: A CLI to back up all your GitHub repositories

 🐍Python  Content type: Code
github.com··Hacker News

Shai-Hulud Descends to Hades: Miasma Worm Campaign Spreads with New PyPI Wave

 🐍Python  Content type: Blog
socket.dev·

Massive PyPI Supply Chain Attack Harvests Cloud Credentials via Python Startup Hooks

 🐍Python
orca.security·

What’s up Python? Pip supports locking, .pth files deprecated

 🐍Python  Content type: News
bitecode.dev·

debsecan-mcp v0.1.2 released to PyPI

 🐍Python  Content type: Blog
copyninja.in·

Shai-Hulud copycat campaign targets Python developers through PyPI typosquatting

 🐍Python  Content type: Blog
about.gitlab.com·

Hades PyPI Malware: Miasma Campaign Exploits .pth Startup Hooks

 🐍Python
sh.itjust.works·

Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks

 🐍Python
securityweek.com·

New Shai-Hulud attack trojanizes 19 science-focused PyPI packages

 🐍Python  Content type: News
bleepingcomputer.com·
Less-relevant results

Nuts – pip/NPM for Java with first-class workspaces and JDK provisioning (9y+)

 🗄️Databases  Content type: Code

Deploying Foundry Hosted Agents from Source Code

 🐍Python

Hades PyPI Attack: 19 Packages Poisoned to Auto-Run Bun Credential Stealer

 🐍Python
thehackernews.com·

Slixmpp 1.16.0 – XMPP/Jabber Library for Python – SleekXMPP

 🐍Python  Content type: Blog
blog.mathieui.net··Hacker News

Pyodide 314.0: Python packages can now publish WebAssembly wheels to PyPI

 🐍Python  Content type: Blog

Release v0.2.90 · anthropics/claude-agent-sdk-python

 🐍Python  Content type: Code
github.com·

Linux Kernel 0-Day 🐧, Hades PyPI Worm 🐍, Anthropic Fable 5 🪄

 🐍Python
tldr.tech·

someone actually leaked the Miasma supply chain attack toolkit source code on github

 🐍Python

Keyboard Shortcuts

Navigation

Next / previous item
j/k
Open post
oorEnter
Preview post
v

Post Actions

Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s

Recommendations

Add interest / feed
Enter
Not interested
x

Go to

Home
gh
Interests
gi
Feeds
gf
Likes
gl
History
gy
Changelog
gc
Settings
gs
Browse
gb
Search
/

General

Show this help
?
Submit feedback
!
Close modal / unfocus
Esc

Press ? anytime to show this help