Skip to main content

Behind the Scenes at the Python Software Foundation

1 month 1 week ago
The Python Software Foundation ("made up of, governed, and led by the community") does more than just host Python and its documnation, the Python Package Repository, and the development workflows of core CPython developers. This week the PSF released its 28-page Annual Impact Report this week, noting that 2024 was their first year with three CPython developers-in-residence — and "Between Lukasz, Petr, and Serhiy, over 750 pull requests were authored, and another 1,500 pull requests by other authors were reviewed and merged." Lukasz Langa co-implemented the new colorful shell included in Python 3.13, along with Pablo Galindo Salgado, Emily Morehouse-Valcarcel, and Lysandros Nikolaou.... Code-wise, some of the most interesting contributions by Petr Viktorin were around the ctypes module that allows interaction between Python and C.... These are just a few of Serhiy Storchaka's many contributions in 2024: improving error messages for strings, bytes, and bytearrays; reworking support for var-arguments in the C argument handling generator called "Argument Clinic"; fixing memory leaks in regular expressions; raising the limits for Python integers on 64-bit platforms; adding support for arbitrary code page encodings on Windows; improving complex and fraction number support... Thanks to the investment of [the OpenSSF's security project] Alpha-Omega in 2024, our Security Developer-in-Residence, Seth Larson, continued his work improving the security posture of CPython and the ecosystem of Python packages. Python continues to be an open source security leader, evident by the Linux kernel becoming a CVE Numbering Authority using our guide as well as our publication of a new implementers guide for Trusted Publishers used by Ruby, Crates.io, and Nuget. Python was also recommended as a memory-safe programming language in early 2024 by the White House and CISA following our response to the Office of the National Cyber Directory Request for Information on open source security in 2023... Due to the increasing demand for SBOMs, Seth has taken the initiative to generate SBOM documents for the CPython runtime and all its dependencies, which are now available on python.org/downloads. Seth has also started work on standardizing SBOM documents for Python packages with PEP 770, aiming to solve the "Phantom Dependency" problem and accurately represent non-Python software included in Python packages. With the continued investment in 2024 by Amazon Web Services Open Source and Georgetown CSET for this critical role, our PyPI Safety & Security Engineer, Mike Fiedler, completed his first full calendar year at the PSF... In March 2024, Mike added a "Report project as malware" button on the website, creating more structure to inbound reports and decreasing remediation time. This new button has been used over 2,000 times! The large spike in June led to prohibiting Outlook email domains, and the spike in November was driven by a persistent attack. Mike developed the ability to place projects in quarantine pending further investigation. Thanks to a grant from Alpha-Omega, Mike will continue his work for a second year. We plan to do more work on minimizing time-on-PyPI for malware in 2025... In 2024, PyPI saw an 84% growth in download counts and 48% growth in bandwidth, serving 526,072,569,160 downloads for the 610,131 projects hosted there, requiring 1.11 Exabytes of data transfer, or 281.6 Gbps of bandwidth 24x7x365. In 2024, 97k new projects, 1.2 million new releases, and 3.1 million new files were uploaded to the index.

Read more of this story at Slashdot.

EditorDavid

AI-hosted infomercial shifts $7.5 million worth of product in China

1 month 1 week ago
PLUS: India tries to untangle TXT marketing opt-ins; China’s AI crackdown succeeds; Australia and Boeing team AWACS, drones; and more!

Asia In Brief  Chinese web giant Baidu last week staged a livestream hosted by an AI version of local influencer Yonghao Luo and scored 13 million hits and $7.5 million of sales.…

Simon Sharwood

Is America Finally Improving Its Electric Car Chargers?

1 month 1 week ago
U.S. consumers "rank problems with public electric vehicle charging and the time it takes to recharge as their top two reasons for rejecting electric vehicles," writes the New York Times, citing figures from data analytics firm J.D. Power. But are things getting better? Automakers and charging companies are building new stations and updating their cars to allow drivers to more easily and quickly recharge their vehicles. They're also outfitting charging stations with items such as food and bathrooms, and making the devices more reliable. Because chargers are only as fast as the cars they connect with, automakers are designing new cars to absorb electricity at higher speeds. In addition, many automakers have cut deals with Tesla to allow owners of other cars to use the company's fast-charging network, the largest in the country and widely considered the most reliable. Early evidence suggests efforts to improve electric vehicle charging are paying off. In recent years, J.D. Power surveys showed about 20% of attempts to charge electric vehicles at all public stations ended in failure because of faulty chargers, long lines or payment glitches. But in the first three months of 2025, overall failure rates fell to 16%, the biggest improvement since the surveys began in 2021. "The industry is finally elevating as a whole," said Brent Gruber, an executive director at J.D. Power. The number of chargers has also increased. There were about 55,200 fast chargers in the United States in May, up from 42,200 a year earlier, according to federal data. In February, a former Phillips 66 gas station in Apex, N.C., near Raleigh, became the first "Rechargery" from Ionna, a company created by eight automakers, including General Motors, Hyundai Motors, BMW and Mercedes-Benz. Their chargers can deliver up to 400 kilowatts of juice, much more than Tesla's 250-kilowatt Superchargers. Some cars can replenish a battery in 30 minutes or less at the higher charging speeds. When connected to chargers of 350 kilowatts or more, including those at Ionna and Electrify America, another fast-charging network, a Hyundai Ioniq 5 can fill its electric "tank" from 10% to 80% in 18 minutes... Some models from BMW, Hyundai and Kia have also enabled a national "Plug and Charge" standard that lets car owners begin charging their vehicles at Ionna stalls without first having to use a smartphone app or swipe a credit card, eliminating a step that sometimes results in errors. Tesla's chargers have long worked this way for Tesla cars and now work with some other vehicles, including Rivian's SUVs and pickups. More cars and charging stations are expected to have plug-and-charge capability in the coming months... Nearly every major automaker is redesigning their cars with plug outlets and software that are compatible with Tesla chargers. Infrastructure upgrades are happening elsewhere too, according to the article.Texas-based gas chain Buc-ee's is offering "premium" charging using renewable power (working with Mercedes), while Waffle House plans to install BP Pulse fast chargers next year. J.D. Power's Gruber says that while America's federal charger program only helped construct a tiny fraction of new chargers, it did also published guidelines which helped automakers and charging companies work together and address technical problems.

Read more of this story at Slashdot.

EditorDavid