Do you worry about your developer / data science supply chain safety? All the packages for the Python ecosystem are much of what makes Python awesome. But the are also a bit of an open door to your code and machine. Luckily the PSF is taking this seriously and hired Mike Fiedler as the full time PyPI Safety & Security Engineer (not to be confused with the Security Developer in Residence staffed by Seth Michael Larson). Mike is here to give us the state of the PyPI security and plans for the future.
▬▬▬▬ About the podcast ▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬
This video is the uncut, live recording of the Talk Python To Me podcast ( [ Ссылка ] ). We cover Python-focused topics every week and publish the edited and polished version in audio form. Subscribe in your podcast player of choice (100% free) at [ Ссылка ].
▬▬▬▬ Guests ▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬
Mike on Twitter: [ Ссылка ]
Mike on Mastodon: [ Ссылка ] , [ Ссылка ]
▬▬▬▬ Links and resources from the show ▬▬▬▬▬▬▬▬▬▬▬▬
Supply Chain examples
SolarWinds: [ Ссылка ]
XcodeGhost: [ Ссылка ]
Google Ad Malware: [ Ссылка ]
PyPI: [ Ссылка ]
OWASP Top 10: [ Ссылка ]
Trusted Publishers: [ Ссылка ]
libraries.io: [ Ссылка ]
GitHub Full 2FA: [ Ссылка ]
Mike's Latest Blog Post: [ Ссылка ]
pprintpp package: [ Ссылка ]
ICDiff: [ Ссылка ]
Listen this episode on Talk Python: [ Ссылка ]
Episode transcripts:[ Ссылка ]
▬▬▬▬ Dive deeper ▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬
Listen to the Talk Python To Me podcast at [ Ссылка ] Over 250 hours of Python courses at [ Ссылка ] Follow us on on Mastodon. Michael: [ Ссылка ] & Talk Python [ Ссылка ]
Ещё видео!