Two fake spellchecker packages on PyPI hid a Python RAT in dictionary files, activating malware on import in version 1.2.0.
A comprehensive tool to scan Python packages for vulnerabilities by parsing requirements.txt files, resolving transitive dependencies, and checking for CVEs and security issues from multiple sources.