gregorni · @gregorni
169 followers · 1000 posts · Server fosstodon.org

Did you know you could add packages on to your RSS ? On the package's page, go to "Release History", right-click where it says "RSS feed" and copy the link, then paste it into your client. Now you'll be notified whenever a new version comes out.

#pypi #feed #rss

Last updated 1 year ago

kodegeek · @josevnz
41 followers · 214 posts · Server fosstodon.org

Busy working on important refactoring and bug-fixes for SuricataLog. It's been a while and the project needs some love.

So far changes looking good.

#python #pypi #suricata #suricatalog

Last updated 1 year ago

Gonçalo Valério · @dethos
333 followers · 1412 posts · Server s.ovalerio.net
Jelmer · @jelmer
244 followers · 197 posts · Server mastodon.cloud

Sad to see PGP support removed from ; apparently not many other people were using it. :-( blog.pypi.org/posts/2023-05-23

#pypi

Last updated 1 year ago

papiris · @papiris
25 followers · 14 posts · Server hachyderm.io

So I've got two programs I'm interested in packaging for :

* [The suite of tools I made for 3D-printing experiments as part of my bsc. thesis](gitlab.com/papiris/motion-esti)
* [The predator detection and alert system I'm currently working on](gitlab.com/papiris/predator-de)

There are hurdles in my mind keeping me from reworking and publishing. :blobfoxgooglyconfused:
Can someone tell me what needs to be done, and tell me to go do it?

Thanks!

#python #pypi #software #dev #adhd #mindhack #accountability

Last updated 1 year ago

kodegeek · @josevnz
41 followers · 214 posts · Server fosstodon.org

So cool, first person to report a serious bug on SuriCataLog!. Reproduced the bug, fixed it and uploaded to Pypi:

pypi.org/project/SuricataLog/

#python #pypi #suricata

Last updated 1 year ago

ottoto · @ottoto2017
128 followers · 2066 posts · Server prattohome.com

「 "北朝鮮 のハッカーが新たな悪意のある パッケージを リポジトリに展開 」: The Hacker News

「3 つの不正な Python パッケージが Package Index (PyPI) リポジトリで発見され、北朝鮮 国家支援の脅威アクターの関与を示す兆候が見られます。

ReversingLabs による調査結果は 、パッケージ tablediter、request-plus、およびrequestspro を検出した。 」

thehackernews.com/2023/08/nort

#python #pypi #vmconnect #prattohome #thehackernews

Last updated 1 year ago

ricardo :mastodon: · @governa
1383 followers · 9041 posts · Server fosstodon.org
Mortal Corley · @corley
0 followers · 63 posts · Server social.tchncs.de

Stimmt schon, ist schei**e. Ähnliches Problem wie bei auch. Aber man darf halt generell schon mal schauen was man so für Module runterlädt und ein bisschen research machen (finde ich).

bleepingcomputer.com/news/secu

#pypi

Last updated 1 year ago

Mike Fiedler, Code Gardener · @miketheman
325 followers · 227 posts · Server hachyderm.io
Dr Joshua Phillips · @woolfian_josh
119 followers · 175 posts · Server zirk.us

It still needs some work, but I'm delighted to announce that the beta of TEI-IIIF, a package that transforms transcriptions into annotation manifests is now available for download from / !

@IIIF

github.com/JoshuaAPhillips/tei

#python #TEI #iiif #GitHub #pypi #digitalhumanities

Last updated 1 year ago

· @benx
238 followers · 1291 posts · Server kolektiva.social

Headline: Cloudflare being exploited for malicious activity

Article: Actual vulnerability is caused by a lack of moderation of third party Python packages

techradar.com/pro/cloudflare-t

#cloudflare #python #pypi #pip #programming

Last updated 1 year ago

Seth Michael Larson · @sethmlarson
987 followers · 795 posts · Server fosstodon.org

@pypi now requires for new user registrations in order to publish or create new projects. This is part of a broader effort to require 2FA for all users of by the end of 2023.

blog.pypi.org/posts/2023-08-08

#2fa #pypi #python #security #opensource

Last updated 1 year ago

Mike Fiedler, Code Gardener · @miketheman
325 followers · 224 posts · Server hachyderm.io

#pypi #python #security

Last updated 1 year ago

Seth Michael Larson · @sethmlarson
987 followers · 795 posts · Server fosstodon.org

I was able to detect this by seeing a large increase in downloads on pepy.tech/project/truststore?v (thanks @psincraian !) 📈

Then using my dependency dataset I could query for dependent packages: github.com/sethmlarson/pypi-da

#pypi

Last updated 1 year ago

ottoto · @ottoto2017
126 followers · 1683 posts · Server prattohome.com

上の偽の パッケージは IT プロフェッショナルをターゲットにしています 」: BLEEPINGCOMPUTER

「VMware vSphere コネクタ モジュール「vConnector」を模倣した悪意のあるパッケージが、IT プロフェッショナルをターゲットに「 」という名前で Python Package Index (PyPI) にアップロードされました。

VMware vSphere は仮想化ツール スイートで、vConnector は開発者やシステム管理者が使用するインターフェイス Python モジュールで、 PyPI 経由で毎月約 40,000 件ダウンロードされています。 」

#pypi #vmware #vconnector #vmconnect #prattohome #bleepingcomputer

Last updated 1 year ago

Jan Bernoth · @jbernoth
8 followers · 62 posts · Server troet.cafe

I'm not sure about your feelings, but when I develop a small package and push it to I get a bit anxious about criticism and people judging my initial work. The reality, however, is somewhat more disheartening: no one really cares. 😅 Nonetheless, I've published a new package: cff2pages. Here it is: pypi.org/project/cff2pages/

#rse #openscience #opensource #pypi

Last updated 1 year ago

Ryan Daws 🤓 · @gadgetry
90 followers · 397 posts · Server techhub.social
Riccardo Magliocchetti · @rmistaken
56 followers · 152 posts · Server hachyderm.io

2.0.22 is out and available for on with a bunch of fixes, a new graceful-harakiri functionality to let workers flush any eventual buffer before getting shut down (e.g. metrics, tracing)and recent ruby support. Full changelog here uwsgi-docs.readthedocs.io/en/l

#uwsgi #python #pypi

Last updated 1 year ago

Youri · @yac
70 followers · 72 posts · Server mamot.fr

I ran into a bug that was just fixed yesterday. And the fix was already released on 😍 Who are these people?

(Yes, this should be standard practice, but it's not)

#langchain #pypi

Last updated 1 year ago