a
a

211 230 335

[email protected]

a



a
Home
Team
Partners
Products
Blog
a
Join Us
Terms and Conditions
  • English
  • Portuguese (Portugal)

Open-source espionage: how to detect the compromised Sonatype chain

by [email protected] | 14 November, 2025 | Cybersecurity, security, Sonatype

Open-source software is today one of the most powerful drivers of innovation. But the recent discovery of Sonatype shows the other side of the coin: a global espionage campaign infiltrated malicious packages into repositories like npm and PyPI, exploiting structural...

Archives

  • February 2026
  • January 2026
  • November 2025
  • October 2025
  • September 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • July 2023
  • August 2021
  • May 2020

Tags

CriblCon 2025 malware open source Portugal Cribl PyPI
copyright © 2026 | homeostase | webdesign by IAMIN

Terms and Conditions

copyright © 2026 | homeostase | webdesign by IAMIN

Terms and Conditions