About half of Python libraries in PyPI may have security iss

About half of Python libraries in PyPI may have security issues, boffins say


Copy
Boffins in Finland have scanned the open-source software libraries in the Python Package Index, better known as PyPI, for security issues and said they found that nearly half contain problematic or potentially exploitable code.
In a research paper distributed via ArXiv, Jukka Ruohonen, Kalle Hjerppe, and Kalle Rindell from the University of Turku describe how they subjected some 197,000 Python packages available through PyPI to a static analysis tool called Bandit and found more than 749,000 instances of at best poor, or at worst insecure, programming.
"Even under the constraints imposed by static analysis, the results indicate [the] prevalence of security issues; at least one issue is present for about 46 per cent of the Python packages," the researchers claimed.

Related Keywords

Finland , Hjerppe , Northern Ostrobothnia , Finnish , Jukka Ruohonen , Google , Python Software Foundation , University Of Turku , Python Package Index , Kalle Hjerppe , Kalle Rindell , App Engine , Python Advisory Database , Google Spearheaded Open Vulnerability , பின்லாந்து , வடக்கு ஒஸ்திரோபோடஞிய , பின்னிஷ் , கூகிள் , பைதான் மென்பொருள் அடித்தளம் , பல்கலைக்கழகம் ஆஃப் டர்கு , பைதான் ப்யாகேஜ் குறியீட்டு , செயலி இயந்திரம் ,

© 2025 Vimarsana