
Research
PyPI Package Disguised as Instagram Growth Tool Harvests User Credentials
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
gradient-descent is a package that contains different gradient-based algorithms, usually used to optimize Neural Networks and other machine learning models. The package contains the following algorithms:
The package purpose is to facilitate the user experience when using optimization algorithms and to allow the users to have a better intuition about how this black-boxes algorithms works.
This is an open-source project, any feedback, improvement ideas, and contributors are welcome.
Dependencies
User installation
pip install gradient-descent
All contributors of all levels are welcome to help in any possible away.
Souce Code
git clone https://github.com/DanielDaCosta/gradient-descent.git
Tests
pytest tests
TO DO
The package is still on its early days and there are a lot of improvements to make:
First of all I would like to thank Hammad Shaikh by his well documented and very well explained GitHub repository Math of Machine Learning Course by Siraj
I would like to appreciate the help of the following contents and articles in the package development:
FAQs
Package for applying gradient descent optimization algorithms
We found that gradient-descent demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A deceptive PyPI package posing as an Instagram growth tool collects user credentials and sends them to third-party bot services.
Product
Socket now supports pylock.toml, enabling secure, reproducible Python builds with advanced scanning and full alignment with PEP 751's new standard.
Security News
Research
Socket uncovered two npm packages that register hidden HTTP endpoints to delete all files on command.