Incident Report of the recent
#PyPI Phishing Campaign
TL,DR:
• PyPI was not breached
• PyPI users were targeted with phishing emails
• A single project saw uploads with malicious code and those releases have been removed
blog.pypi.org/posts/2025-0...
#Python #OpenSource #Security