PyPI security pitfalls and steps towards a secure Python ecosystem

PyPI security pitfalls and steps towards a secure Python ecosystem