Hacker News new | ask | show | jobs
by mrdw 39 days ago
Yeah, I noticed this library few years ago when checking pypi.org for supply chain attack vulnerability and scanned all libraries. There are a lot of such libraries which you can take over.