Explore the potential security risks associated with package management in Python during this 29-minute EuroPython 2023 conference talk. Witness a live demonstration of creating and installing malware from PyPI, highlighting the ease with which malicious code can be inadvertently introduced into projects. Gain crucial insights into the importance of vigilance when managing dependencies and learn about the vulnerabilities that exist in the Python ecosystem. Understand the implications of trusting external packages and discover strategies to protect your projects from potential security threats.
Overview
Syllabus
pip install malware — Max Kahan
Taught by
EuroPython Conference