Chainguard Libraries for Python is a repository index developed for malware resistance. It offers secure construction of each library and their dependencies, filling a significant gap in digital defences. Chainguard processes 10,000 popular Python projects, providing malware protection for critical vulnerabilities in the software supply chain. This initiative follows Chainguard Libraries for Java, further strengthening the security foundation of open-source software.

New Weaponized PyPI Package Attacking Developers to Steal Source Code
A malicious Python package named solana-token was discovered, designed to steal source code and sensitive data from Solana developers. Masquerading as a legitimate utility, it