Email blocking for released domains has been implemented in the PyPI repository
The developers of the Python Package Index (PyPI) have implemented a safeguard against project hijacking through the purchase of released domains listed in account parameters. The attack involves attackers searching for accounts linked to emails with expired domains, registering the released domain under themselves, redirecting email traffic to their server, and taking control of the email to initiate […]
