Stripe Press is a really well designed & implemented website 👏 https://press.stripe.com/
~ updated at: 2024-12-08T10:47:26.468Z
Someone tried to inject a crypto miner into the ultralytics PyPi package (v8.3.41 & v8.3.42)
While these versions no longer are downloadable, if it already is (cached or otherwise) because you’re using it, Please delete those versions / update immediately.
The GitHub issue is still ongoing with what could’ve been done to avoid this. https://github.com/ultralytics/ultralytics/issues/18027
Here’s a comprehensive writeup by the yossarian (@8x5clPW2) on what happened. https://blog.yossarian.net/2024/12/06/zizmor-ultralytics-injection
~ updated at: 2024-12-08T03:06:10.259Z