logoalt Hacker News

detente18yesterday at 3:51 PM2 repliesview on HN

Update:

- Impacted versions (v1.82.7, v1.82.8) have been deleted from PyPI - All maintainer accounts have been changed - All keys for github, docker, circle ci, pip have been deleted

We are still scanning our project to see if there's any more gaps.

If you're a security expert and want to help, email me - [email protected]


Replies

cosmicweatheryesterday at 3:59 PM

> All maintainer accounts have been changed

What about the compromised accounts(as in your main account)? Are they completely unrecoverable?

MadsRCyesterday at 5:17 PM

Dropped you a mail from [email protected]

show 1 reply