Num2words PyPI Package Compromised
21 varunsharma07 4 7/28/2025, 4:55:21 PM stepsecurity.io ↗
Comments (4)
vdupras · 6h ago
What a blast from the past, I created that library, what more than a decade ago? How simpler the world was back then. This was used by nobody except us for our little shitty use case. How noisy this project has become!
arjvik · 2h ago
who currently has control over the package on PyPI? wondering how it was compromised
vdupras · 1h ago
I have no idea, it hasn't been me for years.
varunsharma07 · 10h ago
Popular Python Package num2words v0.5.15 Published Without Repository Tag, Linked to Known Threat Actor