@wuest @aeva okay let me be clearer here: I don't mean we need to make Python not turing-complete so it can't be weaponized, but it might be nice if the *community* developed a slightly more hostile attitude towards this usage. it's not like there aren't things that have *already* been done. PyPI scans for and rejects malicious packages so malware has a harder time using it as a distribution or C&C channel

@glyph @wuest @aeva I like that this is being discussed. I do think there is more that can be done, especially if it is known that malicious users are, just like every other programmer, choosing Python more and more often.

For example, in the urllib3 Discord we often get questions about how to evade bot detection (scalping, scraping, etc) and informally, we don't provide answers to those questions.

0

If you have a fediverse account, you can quote this note from your own instance. Search https://mastodon.social/users/sethmlarson/statuses/116013484025488025 on your instance and quote it. (Note that quoting is not supported in Mastodon.)