

Welcoming PyPI's Safety & Security Engineer Mike Fiedler
Oct 20, 2023
This week, Mike Fiedler, PyPI's Safety & Security Engineer, talks about how he started as a contributor and became a maintainer. They discuss securing accounts using 2FA and a new publishing method called trusted publishing. Mike also shares advice on giving back to open source.
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7 8
Introduction
00:00 • 2min
The Role of a Safety and Security Engineer at PyPI
02:10 • 18min
The Importance of Using 2FA to Prevent Account Takeover Attacks
19:52 • 12min
Trusted Publishers and OIDC
31:48 • 11min
Exploring the Threat of Typo Squatting and Recommendations for Protection
43:08 • 4min
Challenges in Ensuring Python Supply Chain Security and Community Involvement
47:07 • 2min
Discussion about Contributing to Open Source and Finding Beginner-Friendly Issues
49:15 • 3min
Python 3.12 Release and Performance Improvements
52:44 • 6min