Подтвердите e-mail

Для публикаций, комментариев, реакций и сообщений подтвердите адрес.

Профиль

Seth Larson

Профиль Vively

Python core developer, Security & Fellow of Python Software Foundation (@python.org) 🐍 Minnesoootan, he/him, #Python, #opensource, #security #retrogaming 🌐 https://sethmlarson.dev

⟳ Репост от Seth Larson

oh my gosh i've tried to get Incursion to work for years and on a whim i downloaded it today and it... just ran? i am overjoyed to announce that today's roguelike is Incursion: Halls of the Goblin King!

5873
⟳ Репост от Seth Larson

Well, Pixel Pup isn't going to make it for July :( But, I'm confident we'll make August. The game is entirely done, except it turns out music on the #GBA is challenging. We're also adding in one last feature. It just doesn't seem right for a RetroDotCards release to not use the e-Reader! #indiedev

36513
⟳ Репост от Seth Larson

The nomination period for the PSF Board and Python Packaging Council elections is open now, closing next Tuesday, August 11th, 2:00 pm UTC 📝🐍 Don't wait until the last minute, though! Nominate yourself or someone else today: www.python.org/nominations/... #Python

The official home of the Python Programming Languagewww.python.org
066
⟳ Репост от Seth Larson

Yes, it is NTSC. I bought it used at Gamestop, probably 20 years ago at this point. One of my kids has been playing it recently.

011
⟳ Репост от Seth Larson

Years in the making, I finally have a working prototype of my Camera GBD-M2 (previously shared as Game Boy Camera M2). A sequel to the Game Boy Camera M1, this new redesign uses original Game Boy Pocket & Game Boy Camera chips into a camera-like shape roughly the same size as the Ricoh GR III.

311,1 тыс.292
⟳ Репост от Seth Larson

See you in court, creep.

MPR News

Elon Musk’s artificial intelligence company is suing Minnesota over a first-in-the-nation law banning technology that allows users to create and post deepfake videos or images of people naked without their consent.

24912,5 тыс.2,8 тыс.
⟳ Репост от Seth Larson

Someone said something about ingesting libc and this is what popped into my head

47912
⟳ Репост от Seth Larson

Please congratulate our newest PSF Fellow Members for Q2, 2026! Their continued contributions to the Python ecosystem are so very important to our community. #python

Announcing Python Software Foundation Fellow Members for Q2 2026! 🎉The PSF is pleased to announce its second batch of PSF Fellows for 2026. Let us welcome the new PSF Fellows for Q2! The following people continue to do amazing things for the Python community:pyfound.blogspot.com
0104
⟳ Репост от Seth Larson

You can be a part of guiding the future direction of the PSF 🩵🐍💛 Nominate yourself or someone else for the PSF Board for the 2026 election! Nominations open Tuesday, July 28th, 2:00 pm UTC and close Tuesday, August 11th, 2:00 pm UTC. #python

Get Ready: PSF Board Nominations Opening Soon!Who runs for the PSF Board? People who care about the Python community, who want to see it flourish and grow, and also have a few hours a month to attend regular meetings, serve on committees, participate in conversations, and promote the Python community. We're looking for candidates with a diverse range of skills and backgrounds, including leadership experience, fundraising knowledge, non-profit familiarity, and event organizing. Technical expertise, a record of collaboration, and experience speaking or teaching in the Python community are also all qualities we hope to see in Board members.Want to learn more about being on the PSF Board? Check out the following resources to learn more about the PSF, as well as what being a part of the PSF Board entails:pyfound.blogspot.com
0107
⟳ Репост от Seth Larson

The Python Package Index now rejects new files published to releases older than 14 days. This mitigation prevents long-stable releases from being poisoned in case publishing tokens or workflows of PyPI projects are compromised. blog.pypi.org/posts/2026-0... #python #security #supplychain #pypi

Releases now reject new files after 14 days - The Python Package Index BlogPyPI no longer allows publishing new files to releases older than 14 days.blog.pypi.org
04517
⟳ Репост от Seth Larson

Welcome @kushaldas.se back to the Python Security Response Team! devguide.python.org/security/psrt/ With PEP 811, we have a much clearer process for PSRT membership. peps.python.org/pep-0811/ Thanks to Kushal and the PSRT for keeping #Python secure. hugovk.dev/blog/2026/se... #security #PSRT

Python Security Response Team (PSRT)The Python Security Response Team (PSRT) is responsible for handling vulnerability reports for CPython and pip. To report security issues: https://www.python.org/dev/security/ Members: The PSRT pub...devguide.python.org
0113
⟳ Репост от Seth Larson

A woodcarver named Becky W (vortenjou.bsky.social, rosehip.wordpress.com) made a sculpture of my nuthatch comic, showing a white-breasted nuthatch sitting on real nuts and hatching one of them. I'm so happy

211,6 тыс.405
⟳ Репост от Seth Larson

This is the food supply chain equivalent of “[software] is insecure because they put out a lot of CVEs” It’s GOOD that they patch and disclose a lot of vulnerabilities, actually. Who you really need to worry about are the ones who don’t think they have any

Sarah Taber

A quick word on Taco Bell: That's where we found the suspected lettuce, and it's not bc Taco Bell is gross. It's bc Taco Bell is REALLY GOOD at tracing product! Keeping track of exactly where they got their ingredients, & exactly what restaurants each shipment of ingredients went to!

540083
⟳ Репост от Seth Larson

Core Dispatch 8 is live! We've got the latest 3.15 beta out (released with love from #EuroPython 💛), a bunch of lively PEP discussions, and a very unhinged "One More Thing" this time. Check it out 👇 coredispatch.xyz/editions/8

Core Dispatch #8Welcome back to Core Dispatch! This edition covers July 5 through July 18, 2026. Python 3.15.0 beta 4 landed today, July 18 (we just released it at the…coredispatch.xyz
0104
⟳ Репост от Seth Larson

Today's the day! Come on out for story time and good ideas when I share details on the Anatomy of a Phishing Campaign I handled for #PyPI around this time last year. ep2026.europython.eu/session/anat... #EuroPython2026 #EP2026 #Python #OpenSource #SupplyChain #Security

163
⟳ Репост от Seth Larson

I wrote about how, like many other open-source projects, CPython is experiencing a huge increase in security reports. Charts inside! hugovk.dev/blog/2026/se... #Python #security #OpenSource

Security: line goes uphugovk.dev
0104
⟳ Репост от Seth Larson

New #Pillow release! 🛞 Wheels for Python 3.15 beta 🧾 An SBOM in all the wheels 🚅 Performance improvements thanks to @akx 🔒 Security fixes ❌ No longer a wheel for experimental free-threaded 3.13 pillow.readthedocs.io/en/latest/re... #Python #Pillow #PythonPillow #release #security #Python315 #SBOM

12.3.0 (2026-07-01)Security: CVE 2026-59200: Prevent decompression bomb when parsing PDF: When parsing a PDF, PdfStream.decode() attempts to decompress data without any limit. A default maximum of ImageFile.SAFEBLOCK...pillow.readthedocs.io
093
⟳ Репост от Seth Larson

I solved a Super Mario mystery, but the real treasure was learning about the history of playing cards along the way.

Super Mario RPG and the Mystery of the Fifth Card Suit — Thrilling Tales of Old Video GamesYes, there’s a reason Hudson’s Adventure Island uses the same symbol.www.thrillingtalesofoldvideogames.com
48929
⟳ Репост от Seth Larson

If you use GitHub Actions to publish to #PyPI, I wrote a blog post outlining what I consider the key things you can do to secure your publishing workflow. snarky.ca/how-to-publi... If you don't use GitHub Actions for publishing, this post will NOT be of interest to you.

How to publish to PyPI using GitHub Actions securelyThere have been several security incidents lately that involved compromising GitHub Actions workflows. This has led some to say "GitHub Actions is the weakest link" in publishing and to GitHub publish...snarky.ca
2126
Показать ещё