Sign in

Maikel Mardjan

@nocomplexity.bsky.social
37 followers 61 following 160 posts

IT Architect, (System) Software Engineer, Technology Addict, IT Entrepreneur, Hacker, Track And Field Runner, and Problem solver! Simplify IT -> nocomplexity.com

PostsRepliesMedia
Maikel Mardjan @nocomplexity.bsky.social · 1h
Talks, workshops, and more! Check www.pycon-nl.org #secure your seat now! 15 October, Utrecht 🐍 #PyConNL #Python #pydata #programming #innovation
pycon-nl.org
PyCon NL 2026
PyCon NL 2026
000
Maikel Mardjan @nocomplexity.bsky.social · 29/09/2026
Is Taint Analysis Worth It? A Deep Dive into Python Security Tooling nocomplexity.substack.com/p/static-ana... #security #python #pycon #pydata
nocomplexity.substack.com
Static Analysis vs. Taint Analysis: Which One Actually Secures Your Python Code?
Is Taint Analysis Worth It? A Deep Dive into Python Security Tooling
001
Reposted by Maikel Mardjan
PyCon NL @pycon-nl.bsky.social · 28/09/2026
Our first keynote speaker 🎉 Georgi Ker, Director of the Python Software Foundation, on sustaining open source for the future. Who carries the weight, and how new leaders grow into it 💚 Told through a true story. 15 October, Utrecht 🐍 #PyConNL #Python
011
Reposted by Maikel Mardjan
PyCon NL @pycon-nl.bsky.social · 16/09/2026
The schedule is live 🎉 Talks, workshops, timings. All out in the open at pycon-nl.org/schedule Except the keynote and what we are doing in room three. Those stay sealed a little longer 🤫 15 October, Utrecht 🐍 #PyConNL #Python
pycon-nl.org
PyCon NL 2026
PyCon NL 2026
001
Reposted by Maikel Mardjan
PyCon NL @pycon-nl.bsky.social · 18/09/2026
We are very happy to welcome DuckLabs as a Gold sponsor of PyCon NL 2026!! 🎉 DuckLabs is the team behind DuckDB & DuckLake! They design, build, and maintain the DuckDB engine, and help companies run it reliably in production through enterprise support, advisory, and engineering collaboration.
131
Reposted by Maikel Mardjan
PyCon NL @pycon-nl.bsky.social · 17/09/2026
Next speaker announced 🎉 Taras Kozlov opens up the asyncio event loop. call_soon, transports, protocols, streams, reactor vs proactor. All the machinery under your await ⚙️ 15 October, Utrecht 🐍 #PyConNL #Python
002
Reposted by Maikel Mardjan
PyCon NL @pycon-nl.bsky.social · 21/09/2026
Next speaker announced 🎉 Maikel Mardjan built an open source Python SAST scanner from scratch. He'll show what static analysis catches, what it misses, and why "zero findings" is not the same as "safe" 🔍 15 October, Utrecht 🐍 #PyConNL #Python
001
Maikel Mardjan @nocomplexity.bsky.social · 22/09/2026
#Python plays a central role in modern computing, yet Python applications are not immune to cybersecurity threats. Developing secure programs in Python requires understanding its strengths and limitations in handling security. Check: www.pycon-nl.org #pycon #utrecht #jaarbeurs #security #appsec
101
Maikel Mardjan @nocomplexity.bsky.social · 15/09/2026
Schedule for PyCon NL 2026 is published! Time to claim your seat and Save the date 15-10-2026 Check www.pycon-nl.org/schedule Dive into the latest #Python stuff and meet fellow coders at #PyConNL #utrecht #jaarbeurs #pycon www.pycon-nl.org
pycon-nl.org
PyCon NL 2026
PyCon NL 2026
000
Maikel Mardjan @nocomplexity.bsky.social · 15/09/2026
Is That Python Script Safe? How to Check Before You Run. nocomplexity.substack.com/p/how-to-saf... #python #cybersecurity #appsec #codeaudit
nocomplexity.substack.com
How to Safely Use Python Programs from Untrusted Sources
Is That Python Script Safe? How to Check Before You Run
000
Maikel Mardjan @nocomplexity.bsky.social · 08/09/2026
Using causal loop diagrams helps you manage and solve complexity issues. Solve your problem situation, use this(free!) online system dynamics tool now. nocomplexity.com/causalloopdi... #nocomplexity #solve #your #problems #cybersecurity #cld
001
Maikel Mardjan @nocomplexity.bsky.social · 05/09/2026
Voorkom #Cyber #Security incidenten. Simpel en effectief. Python Code Audit is de #opensource oplossing om kwetsbaarheden in Python programma’s te vinden. Detecteer beveiligingsfouten in #Python voordat je er last van kan krijgen. organisatieontwerp.nl/codeaudit/
static.klipy.com
Yuriatomoki Yuria & Riku: Playful Monkey Fun
ALT: Yuriatomoki Yuria & Riku: Playful Monkey Fun
030
Maikel Mardjan @nocomplexity.bsky.social · 03/09/2026
Secure CSV Handling in #Python The Tiny Python Trick That Blocks CSV DoS Attacks: @validate_csv That’s it. The decorator runs a smart, fast and comprehensive set of checks before your function body executes. medium.com/@maikelmardj... #owasp #infosec #appsec #pycon #pydata
medium.com
Secure CSV Handling in Python: A Practical Guide
The Tiny Python Trick That Blocks CSV DoS Attacks
000
Maikel Mardjan @nocomplexity.bsky.social · 02/09/2026
Cybersecurity is often surrounded by myths and perceived as an impossibly complex domain. While it is true that no perfect solution exists, effective security does not have to be difficult. Check nocomplexity.com/documents/se... #infosec #cybersec #security
000
Maikel Mardjan @nocomplexity.bsky.social · 28/08/2026
The Simplest Way to Make Evil XML Files Harmless in Python The majority of Python developers are not security experts, and nor should they have to be! However, AI tools offer little assistance, as LLMs are trained on massive amounts of insecure codebases. nocomplexity.substack.com/p/defusing-x...
nocomplexity.substack.com
Defusing XML bombs and other exploits
The Simplest Way to Make Evil XML Files Harmless in Python
000
Maikel Mardjan @nocomplexity.bsky.social · 25/08/2026
Processing XML Files is dangerous. So protect against all types of xml bombs with one simple API call… @validate_xml github.com/nocomplexity...
github.com
GitHub - nocomplexity/fileaudit: Simplify building secure Python applications by default. Validate files before you use them.
Simplify building secure Python applications by default. Validate files before you use them. - nocomplexity/fileaudit
000
Maikel Mardjan @nocomplexity.bsky.social · 21/08/2026
loading csv files can result in a security nightmare. so check! @validate_csv def process_csv(csv_path): text = Path(csv_path).read_text(encoding="utf-8") return f"Processed {len(text.splitlines())} lines from {csv_path}" github.com/nocomplexity...
github.com
GitHub - nocomplexity/fileaudit: Simplify building secure Python applications by default. Validate files before you use them.
Simplify building secure Python applications by default. Validate files before you use them. - nocomplexity/fileaudit
000
Maikel Mardjan @nocomplexity.bsky.social · 18/08/2026
Hardening #Python Applications Against #Malicious JSON Payloads One simple line – validates size, depth, existence and JSON syntax result = validate_json(”json_demo_files/valid.json”) nocomplexity.substack.com/p/implementi... #pydata #appsec #infosec #zerotrust
nocomplexity.substack.com
Implementing Zero-Trust Input Validation for Python JSON Data
Hardening Python Applications Against Malicious JSON Payloads
010
Maikel Mardjan @nocomplexity.bsky.social · 17/08/2026
TAR.GZ archives can embed zip #bombs, path-traversal payloads (../), oversized members, symlinks, device nodes, or excessively deep directory trees. So Validate files before you use them. github.com/nocomplexity... #python #pycon #infosec #appsec
github.com
GitHub - nocomplexity/fileaudit: Simplify building secure Python applications by default. Validate files before you use them.
Simplify building secure Python applications by default. Validate files before you use them. - nocomplexity/fileaudit
020
Maikel Mardjan @nocomplexity.bsky.social · 10/08/2026
#Python Code should not contain #obfuscated content, particularly code that uses base64 (and related encodings) for encoding or decoding data is always suspected. So check your code, run a quick #security check github.com/nocomplexity...
github.com
GitHub - nocomplexity/codeaudit: Codeaudit - Modern Python source code security analyzer based on distrust.
Codeaudit - Modern Python source code security analyzer based on distrust. - nocomplexity/codeaudit
000
Maikel Mardjan @nocomplexity.bsky.social · 28/07/2026
Hidden Security Risks of System Calls in Python AI code reviews are limited: they cannot take into account the business context in which code runs and is used. That context is essential. open.substack.com/pub/nocomple... #PyTorch #pydata #pycon #owasp #mythos #appsec
open.substack.com
The Hidden Security Risks of System Calls in Python
Navigating the Pitfalls of Python System Calls
000
Maikel Mardjan @nocomplexity.bsky.social · 23/07/2026
Measure the Internet, Solve #puzzles to advance research using #RNAs, reduce #Co2 #emissions from your computing, #reinvent programming and more! Check our #Radical Open #Innovation News: www.bm-support.org/roi-news-wee...
bm-support.org
Radical Open Innovation News week 30-2026 – Radical Open Innovation
010
Maikel Mardjan @nocomplexity.bsky.social · 21/07/2026
Is CPython Secure? I think this question should be asked by everyone who uses Python applications or who creates Python applications for others. medium.com/@maikelmardj... #python #foss #cybersecurity #cpython #psf
medium.com
Is CPython Secure?
Short answer: Yes! So you can stop reading now.
010
Maikel Mardjan @nocomplexity.bsky.social · 11/07/2026
Using importlib.util.spec_from_file_location() with importlib.util.module_from_spec can bypass the normal #Python import mechanism and allow arbitrary Python files to be executed. I’ll want this detected in a Python #security code analyser. So way I created github.com/nocomplexity... #infosec
github.com
GitHub - nocomplexity/codeaudit: Codeaudit - Modern Python source code security analyzer based on distrust.
Codeaudit - Modern Python source code security analyzer based on distrust. - nocomplexity/codeaudit
020
Maikel Mardjan @nocomplexity.bsky.social · 08/07/2026
Cross-Ecosystem Vulnerabilities in Python Applications I am interested in #Python #security #research. #weaknesses in Python applications are never exposed or registered as #CVE. The process for registering a CVE is long, painful, and very time-consuming. open.substack.com/pub/nocomple...
open.substack.com
Cross-Ecosystem Vulnerabilities in Python Applications
Security-by-Design: Surviving Vulnerabilities in Your Python Dependencies
000
Reposted by Maikel Mardjan
Maikel Mardjan @nocomplexity.bsky.social · 02/07/2026
What the Halting Problem Means for Python Security The Case for 100% Transparent, Open-Source Python SAST open.substack.com/pub/nocomple... #python #security #pydata #gpl
open.substack.com
What the Halting Problem Means for Python Security
The Case for 100% Transparent, Open-Source Python SAST
121
Maikel Mardjan @nocomplexity.bsky.social · 02/07/2026
Open #Python #Innovation News SnakeCharmer, Python’s Lazy Imports, Fault Detection for C-Extended Python Projects, Uncovering Similar but Different Packages in #PyPI and more! open.substack.com/pub/nocomple...
open.substack.com
Open Python Innovation News
I follow Python news, and especially Python security-related news articles.
010
Maikel Mardjan @nocomplexity.bsky.social · 02/07/2026
What the Halting Problem Means for Python Security The Case for 100% Transparent, Open-Source Python SAST open.substack.com/pub/nocomple... #python #security #pydata #gpl
open.substack.com
What the Halting Problem Means for Python Security
The Case for 100% Transparent, Open-Source Python SAST
121
Maikel Mardjan @nocomplexity.bsky.social · 23/06/2026
“there's no such thing as "age verification" for the internet. What we call "age verification" is actually mass surveillance, so invasive and pervasive that it makes the ad-tech industry's commercial surveillance look like some kind of cypherpunk darknet pirate utopia”
06618
Maikel Mardjan @nocomplexity.bsky.social · 23/06/2026
Using #python dynamic imports is a weakness and leads to security vulnerabilities! Dynamic imports are dangerous if you cannot validate upfront what is being imported. Allowing dynamic module imports makes it easy for #attackers to execute arbitrary code. nocomplexity.github.io/pythonsecuri...
nocomplexity.github.io
Python Security Handbook - Python Security Handbook
Python Security essentials
021
Maikel Mardjan @nocomplexity.bsky.social · 22/06/2026
Shift Left, Stay Secure: Embedding Python Code Audit (SAST) into Your GitLab CI Workflow open.substack.com/pub/nocomple... #codeberg #sourcehut #appsec
open.substack.com
Python SAST: Automate It in Your CI
Shift Left, Stay Secure: Embedding Python Code Audit (SAST) into Your GitLab CI Workflow
000
Maikel Mardjan @nocomplexity.bsky.social · 17/06/2026
XML parsing in Python can expose applications to severe security vulnerabilities, including denial of service #attacks, local file access, and firewall circumvention. nocomplexity.github.io/pythonsecuri... #python #code is not #securebydefault #pydata
020
Maikel Mardjan @nocomplexity.bsky.social · 16/06/2026
github.com/nocomplexity...
github.com
GitHub - nocomplexity/codeaudit: Codeaudit - Modern Python source code security analyzer based on distrust.
Codeaudit - Modern Python source code security analyzer based on distrust. - nocomplexity/codeaudit
000
Maikel Mardjan @nocomplexity.bsky.social · 13/06/2026
Zero Trust for Python Security: A Practical Checklist open.substack.com/pub/nocomple... #foss #python #security #open #pydata
open.substack.com
Zero Trust for Python Security: A Practical Checklist
Why Expensive Tools Won't Save You
010
Maikel Mardjan @nocomplexity.bsky.social · 11/06/2026
Insights from T-DOSE 2026 Rethinking Python Asserts in SAST open.substack.com/pub/nocomple... #tdose #python #owasp #cyber #foss #gpl
open.substack.com
Rethinking Python Asserts in SAST
Insights from T-DOSE 2026
020
Reposted by Maikel Mardjan
Maikel Mardjan @nocomplexity.bsky.social · 02/06/2026
Think Python SAST tools are bulletproof? Beware the false sense of security. Learn why and how I built a more reliable, user-friendly tool & how weaknesses in #Python are detected. Visit the (free) FOSS t-dose.org CONF this weekend! #eindhoven #geldrop @t-dose.bsky.social #Brainport
055
Maikel Mardjan @nocomplexity.bsky.social · 05/06/2026
Visit the (free) FOSS t-dose.org CONF this weekend! And join the #python #security talk to prevent #vulnerabilities in the #future pretalx.t-dose.org/2026/talk/P3... #eindhoven #geldrop #fsfe #oss #foss
pretalx.t-dose.org
False Sense of Security in Static Analysis: Building a Reliable Python SAST Scanner T-DOSE 2026
Python code plays a central role in modern computing, yet Python applications are not immune to cybersecurity threats. Consequently, security has become a critical concern for Python users and develop...
020
Maikel Mardjan @nocomplexity.bsky.social · 03/06/2026
Discover the latest #trends in #Free and #OpenSource Software. Connect with developers, attend expert talks, and collaborate on exciting projects. Visit the (free) FOSS t-dose.org/2026/ #CONF this weekend! And join to the #python #security talk! #eindhoven #geldrop #tdose #Brainport #t-dose
150
Maikel Mardjan @nocomplexity.bsky.social · 02/06/2026
The Ultimate Python Security Handbook nocomplexity.github.io/pythonsecuri... This open-source book covers #Python #Security Fundamentals with a strong focus on real-world practices, essential security tools, and actionable security recipes. #pycon #pydata #infosec #appsec #owasp
nocomplexity.github.io
Python Security Handbook - Python Security Handbook
Python Security essentials
030
Maikel Mardjan @nocomplexity.bsky.social · 02/06/2026
Think Python SAST tools are bulletproof? Beware the false sense of security. Learn why and how I built a more reliable, user-friendly tool & how weaknesses in #Python are detected. Visit the (free) FOSS t-dose.org CONF this weekend! #eindhoven #geldrop @t-dose.bsky.social #Brainport
055
Maikel Mardjan @nocomplexity.bsky.social · 12/05/2026
Start Security Testing in the Browser Being security-aware is crucial, but it is not enough. So never trust, always verify! nocomplexity.com/browser-base... #cyber #security #testing #t-dose
nocomplexity.com
Simplifying the Stack: Start Security Testing in the Browser – NO Complexity
000
Maikel Mardjan @nocomplexity.bsky.social · 06/05/2026
Security By Design: The Shortcut to Smarter, Safer Systems Stop Getting Breached! open.substack.com/pub/nocomple... #cybersecurity #infosec #appsec
open.substack.com
Security By Design: The Principles That Could Save Your Business
Stop Getting Breached: Security Principles You Can’t Ignore
000
Maikel Mardjan @nocomplexity.bsky.social · 04/05/2026
Avoid the "Silver Bullet" Fallacy: Ready to master Security by Design? This #Security by Design publication is created to be used and improved by you! securitybydesign.nocomplexity.com Never trust and assume but verify! #securitybydesign #owasp #cyber
securitybydesign.nocomplexity.com
Welcome to Mastering Security By Design - Mastering Security By Design
Security by Design is a proven method to develop products that are less vulnerable for cyber security threats.
000
Maikel Mardjan @nocomplexity.bsky.social · 03/05/2026
What if you could Identify data exfiltration in #Python code? I think Detecting and validating potential data exfiltration paths in Python applications is essential. A critical step in mitigating #security and #privacy risks github.com/nocomplexity...
github.com
GitHub - nocomplexity/codeaudit: Codeaudit - Modern Python source code security analyzer based on distrust.
Codeaudit - Modern Python source code security analyzer based on distrust. - nocomplexity/codeaudit
000
Maikel Mardjan @nocomplexity.bsky.social · 30/04/2026
Standard security testing isn’t enough for Python. Use securitytesting.nocomplexity.com and github.com/nocomplexity... #python #pycon #pydata #infosec
010
Maikel Mardjan @nocomplexity.bsky.social · 10/04/2026
Simplifying Python Security: A Local-First Approach with WASM open.substack.com/pub/nocomple... #python #pydata #infosec #testing #cybersecurity
open.substack.com
Zero Install: The future of FOSS Python static application security testing
Simplifying Python Security: A Local-First Approach with WASM
000
Maikel Mardjan @nocomplexity.bsky.social · 08/04/2026
Identifying data exfiltration in #Python code—specifically within telemetry, remote analytics, and SaaS integrations—is a critical step in mitigating #security risks. github.com/nocomplexity... #pycon #infosec #PyTorch
github.com
GitHub - nocomplexity/codeaudit: Codeaudit - Modern Python source code security analyzer based on distrust.
Codeaudit - Modern Python source code security analyzer based on distrust. - nocomplexity/codeaudit
010
Maikel Mardjan @nocomplexity.bsky.social · 03/04/2026
How E-Waste is Powering the Next Tech Revolution open.substack.com/pub/nocomple... #innovation #foss #technology #ai #Taalas #unbinare #mojo
open.substack.com
Is Your Hardware Trash? How E-Waste is Powering the Next Tech Revolution
Radical Open Innovation News
000
Maikel Mardjan @nocomplexity.bsky.social · 24/03/2026
#OpenClaw is a Security Nightmare, never use #Cloudflare , Data Exfiltration Detection in #Python Code and more! Check Open #Security News: nocomplexity.com/open-securit...
media.tenor.com
a blue and white stuffed animal with a bow tie
ALT: a blue and white stuffed animal with a bow tie
010
Maikel Mardjan @nocomplexity.bsky.social · 13/03/2026
Static Application Security Testing (SAST): Simplicity Matters So Simple, Local, FOSS: Reclaiming Python Security from the SaaS Giants open.substack.com/pub/nocomple... #python #appsec
open.substack.com
Static Application Security Testing (SAST): Simplicity Matters
Simple, Local, FOSS: Reclaiming Python Security from the SaaS Giants
010