Improving PyPI's security with Two Factor Authentication
10:45am - 11:10am on Saturday, October 5 in PennTop SouthWilliam Woodruff
- Watch:
- https://youtu.be/xNZIxt-ABUs
Description
Since March, Trail of Bits has worked with the PSF to implement and land major security improvements in Warehouse, the codebase that drives PyPI. This talk will cover just one of those improvements: the addition of two factor authentication to user logins. Attendees will learn about the technical details of two factor schemes, the security properties they can (and can not) provide, and the process for making major changes to core Python infrastructure.