
Research
2025 Report: Destructive Malware in Open Source Packages
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.
pyromark
Advanced tools
pyromark (stands for Python Rust Optimized Markdown) is a blazingly fast CommonMark-compliant Markdown parser for Python.
Uses pulldown-cmark Rust crate under the hood.
pip install -U pyromark
https://pyromark.readthedocs.io
See documentation for more comprehensive examples.
import pyromark
html = pyromark.html("# Hello world")
assert html == "<h1>Hello world</h1>\n"
import pyromark
for event in pyromark.events("# Hello world"):
# All event types are fully type annotated
# so you will get static type checking
# and Tab completions in your IDE!
match event:
case {"Start": {"Heading": {"level": heading_level}}}:
print(f"Heading with {heading_level} level started")
case {"Text": text}:
print(f"Got {text!r} text")
case {"End": {"Heading": heading_level}}:
print(f"Heading with {heading_level} level ended")
case other_event:
print(f"Got {other_event!r}")
160x faster than markdown2, 130x faster than Markdown, 119x faster than mistletoe, 103x faster than markdown-it-py, 75x faster than mistune.
If you use threading, the difference with other libraries will be even more enormous, since pyromark releases the GIL.
See benchmark.
FAQs
Blazingly fast Markdown parser
We found that pyromark demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.

Security News
Socket CTO Ahmad Nassri shares practical AI coding techniques, tools, and team workflows, plus what still feels noisy and why shipping remains human-led.

Research
/Security News
A five-month operation turned 27 npm packages into durable hosting for browser-run lures that mimic document-sharing portals and Microsoft sign-in, targeting 25 organizations across manufacturing, industrial automation, plastics, and healthcare for credential theft.