URL has been copied successfully!
PyPI Issues Advisory to Prevent ZIP Parser Confusion Attacks on Python Package Installers
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

PyPI Issues Advisory to Prevent ZIP Parser Confusion Attacks on Python Package Installers

The Python Package Index (PyPI) has announced new restrictions aimed at mitigating ZIP parser confusion attacks that could exploit discrepancies in how Python package installers and inspectors handle ZIP archives. This move comes in response to vulnerabilities identified in tools like the uv installer, which exhibits different extraction behaviors compared to Python-based installers relying on […] The post PyPI Issues Advisory to Prevent ZIP Parser Confusion Attacks on Python Package Installers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

First seen on gbhackers.com

Jump to article: gbhackers.com/pypi-issues-advisory-to-prevent-zip-parser-confusion-attacks/

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link