Two fake spellchecker packages on PyPI hid a Python RAT in dictionary files, activating malware on import in version 1.2.0.
Texas officials are trying to track more than 1,200 surprise seed packages linked to China that are showing up in mailboxes across the state. In the first two weeks of January 2026, they picked up 120 ...