DjangoCon Europe 2026

Mateusz Bełczowski

I'm a Python developer with over 10 years of experience building web applications and APIs. I co-organize PyGDA, a local Python meetup in Poland, and have experience as a Python trainer. In recent years, I've developed a growing interest in web application security and DevSecOps. When I'm not coding, you'll find me playing table tennis or chess.


Session

04-17
16:15
30min
What's in your dependencies? Supply chain attacks on Python projects
Mateusz Bełczowski

Every pip install is an act of trust. Attackers have exploited that trust - phishing maintainers, hijacking CI/CD pipelines, turning popular packages into malware. Learn how these attacks work and practical defenses for your projects.

AMPHITHEATRE