United States
USA
On March 28, the Python Package Index suspended new project creation and new user registration to mitigate an ongoing campaign that uploaded malicious typosquatting packages; the restrictions were lifted about 10 hours later. PyPI is developed and maintained by the Python Software Foundation, making the foundation the identifiable operator whose software-distribution service was materially restricted during the incident.
Estimated severity
65 / 100
Source reliability
92 / 100
Approximate Date
28/03/2024
Targeted Company
PYTHON SOFTWARE FOUNDATION
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
United States
USA
No other affected countries reported
Target country
United States
Affected countries
No information
Impacted regions
No information
Duration
0.42 days
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
No information
Please rotate your phone