Brussels / 1 & 2 February 2025

schedule

Security


09 10 11 12 13 14 15 16 17 18
Saturday Syd: An Introduction to Secure Application Sandboxing for Linux
Tightening every bolt
Kintsugi: A Decentralized E2EE Key Recovery Protocol
Nothing to see here - practical advice to avoid tunnel vision and similar decloaking techniques against VPNs
The SELinux problem that cast a months long shadow
A Practical Introduction to using sq, Sequoia PGP's CLI
Using DPoP to use access tokens securely in your Single Page Applications
Breaking Barriers: The Art of (Free) Gamified Security Training
TKey, an open source/open hardware security token
Hardware backed SSH keys: ssh-tpm-agent
Sigsum: Detecting rogue signatures through transparency
An overview on detecting Login Anomalies with BuffaLogs
Managing Vulnerabilities in Open-Source Dependencies
What if Log4Shell were to happen today?
How Threat Actors Are Weaponizing Your Favorite Open-Source Package Registry
Hunting for GitHub Actions bugs with zizmor
Enhancing artifact security with GitHub Artifact Attestations

Read the Call for Papers at https://lists.fosdem.org/pipermail/fosdem/2024q4/003556.html.

Event Speakers Start End

Saturday

  Syd: An Introduction to Secure Application Sandboxing for Linux
Ali Polatel 10:30 11:00
  Tightening every bolt
Daniel Stenberg 11:00 11:30
  Kintsugi: A Decentralized E2EE Key Recovery Protocol
Emilie Ma 11:30 12:00
  Nothing to see here - practical advice to avoid tunnel vision and similar decloaking techniques against VPNs
Till Maas 12:00 12:30
  The SELinux problem that cast a months long shadow
Matyas Horky 12:30 13:00
  A Practical Introduction to using sq, Sequoia PGP's CLI
Neal H. Walfield 13:00 13:30
  Using DPoP to use access tokens securely in your Single Page Applications
Alexander Schwartz, Takashi Norimatsu 13:30 14:00
  Breaking Barriers: The Art of (Free) Gamified Security Training
Joseph Katsioloudes 14:00 14:30
  TKey, an open source/open hardware security token
Michael Cardell Widerkrantz 14:30 15:00
  Hardware backed SSH keys: ssh-tpm-agent
Morten Linderud 15:00 15:30
  Sigsum: Detecting rogue signatures through transparency
Niels Möller 15:30 16:00
  An overview on detecting Login Anomalies with BuffaLogs
Federico Foschini, Lorena Goldoni 16:00 16:30
  Managing Vulnerabilities in Open-Source Dependencies
Eva Sarafianou 16:30 17:00
  What if Log4Shell were to happen today?
Piotr P. Karwasz 17:00 17:30
  How Threat Actors Are Weaponizing Your Favorite Open-Source Package Registry
Ian Kretz, Sebastián Obregoso 17:30 18:00
  Hunting for GitHub Actions bugs with zizmor
William Woodruff 18:00 18:30
  Enhancing artifact security with GitHub Artifact Attestations
Fredrik Skogman 18:30 19:00