PyPI, NuGet, npm Flooded with Roblox and Fortnite Spam: What Draws OSS Attackers to Gamers?

| | DevZone, FEATURED, npm, Nuget, PyPI, Vulnerabilities
This week, PyPI and NuGet open source repositories have been flooded with more than a hundred spam “Roblox” packages pointing to bogus links. Additionally, npm, the largest NodeJS package registry has also ...

Nexus Repository & Microsoft NuGet Gallery: OData Changes for NuGet V2

| | Nexus Repository, Nuget, Product
Microsoft has officially announced changes to the NuGet Gallery. The NuGet V2 protocol makes use of a query mechanism called OData. Microsoft is planning to deprecate certain OData queries, which began with ...

New in Nexus Repository 3.25: How Do I Switch to NuGet V3?

We are excited to announce the official release of Nexus Repository 3.25. Delivering on much anticipation from the Nexus community, this release completes full support for NuGet V3 repositories, including new NuGet ...

New in Nexus Repository 3.24: Storage Optimization at Scale and NuGet V3 Hosted

We are excited to announce the official release of Nexus Repository 3.24. This release focuses on two initiatives from the Nexus Repository product teams - enterprise administration capabilities and frictionless ecosystem support ...

What is a Package Dependency Manager?

This is an excerpt from Out of the Wild: A Beginner's Guide to Package and Dependency Management, a Sonatype Guide. This is the first of three installments ...