Sometime in early 2026, a routine vulnerability scan turned into something far worse for machine learning teams that depend ...
On April 30, two releases of one of the most popular machine learning libraries on the Python Package Index were caught ...
A malicious version of the PyTorch Lightning package published on the Python Package Index (PyPI) delivers a ...
TL;DR Two malicious versions of the popular PyTorch Lightning package have been uploaded to PyPI following the publisher ...
Malicious Lightning 2.6.2/2.6.3 released April 30 enable credential theft via hidden payload, leading to PyPI quarantine and ...