home.social

#sosscommunity — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #sosscommunity, aggregated by home.social.

fetched live
  1. 📅 Towards the end of 2024, OpenSSF proudly hosted the inaugural #SOSSCommunity Day India, and we’re excited to share that it was a tremendous success!

    👉 Check out the wrap-up blog to relive the highlights and explore the key takeaways. openssf.org/blog/2025/01/03/so

    #OpenSSF #OSS #OSSSecurity #OpenSource #supplychainsecurity #Cybersecurity

  2. 👏 That's a wrap for our first SOSS Community Day in India! 🎉 Thanks to the community for sharing your insights and expertise on #OSSSecurity. As we close out our 2024 events, we’re excited for what’s to come in 2025! 🚀
    #SOSSCommunity

  3. Abhimanyu Dhamija from Koalalab talks about securing CI/CD environments, highlighting the complexity of egress-filtering and SSL inspection. Inspired by runtime security, he discusses using BOLT and eBPF for efficient, secure CI pipelines.

    📍 #SOSSCommunity Day India

  4. Sanket Sudake (InfraCloud Technologies) shares how Fission OSS, a serverless platform for Kubernetes, adopted SLSA practices: reproducible builds, signed artifacts, and secure dependency management.

    📍 #SOSSCommunity Day India

  5. Anitha Natarajan & Savita Ashture (Red Hat) discuss securing software supply chains against quantum threats. Learn to migrate to Post Quantum Cryptographic algorithms using Tekton & Sigstore as a reference.

    📍 #SOSSCommunity Day India

  6. Abhinav Sharma (KodeKloud) explores building security-first open source projects using tools like CodeQL, OpenSSF Scorecard, and automated pipelines. Learn to integrate security from day one!

    📍 #SOSSCommunity Day India

  7. Join Harsh Thakur (Civo) & Saiyam Pathak (Loft Labs) as they talk about practical steps for achieving #SLSA compliance:

    ✔️ Generating SBOMs & provenance
    ✔️ Keyless attestations with cosign
    ✔️ Hermetic builds with Buildkit

    📍 #SOSSCommunity Day India

  8. 👏 Welcome & Opening Remarks by Arun Gupta, Vice President and General Manager, Developer Programs, Intel Corporation
    📍 #SOSSCommunity Day India

  9. 💡 Engage, Learn, Innovate!
    Join us at #SOSSCommunity
    Day India to explore cutting-edge solutions for open source security. With sessions on education, tooling, and innovation, it’s the place to connect with experts and potential collaborators.

    #OSSSecurity #OpenSource

  10. 📢 Join us for our next in-person meetup in Tokyo!

    We’ll share key highlights and insights from:
    🔹 #SOSSFusion (Oct 22–23, Atlanta)
    🔹 #OSSummit Japan (Oct 28–29, Tokyo)
    🔹 #SOSSCommunity Day Japan (Oct 30, Tokyo)

    👉 Register now: linuxfoundation.jp/events/2024

  11. 🚨 SOSS Community Day is coming to Delhi!

    The agenda is LIVE—don’t miss this opportunity to connect with the open source and security community, share ideas, and explore ways to secure the OSS we all rely on.

    📅 Mark your calendar & register today: events.linuxfoundation.org/sos

    #SOSSCommunity #India #OpenSource #OSSSecurity

  12. 🚀 OpenSSF welcomes new members and launches exciting initiatives to advance open source software security! Thrilled to bring the community together at #SOSSCOMMUNITY Day Japan during #OSSummit, where leaders and contributors unite to strengthen open source security.

    openssf.org/press-release/2024

  13. 🌐 Register now! Join us next week, for SOSS Community Day Japan 🇯🇵 – where security & open source communities unite to share ideas on securing the OSS we all depend on. Let’s build a sustainable, secure future together! 🔒
    events.linuxfoundation.org/sos
    #SOSSCommunity

  14. 🌟 Thank you to the OSS Community for joining us in beautiful Atlanta for #SOSSFusion!

    Over the past two days, we witnessed the fusion of AI Security, Diversity, and Open Source Public Policy. With so many talented technologists and experts coming together, we’re excited about what we can build together!

    Next stop: Tokyo, Japan for #SOSSCommunity Day Japan! 🇯🇵

  15. 📅 Join us for SOSS Community Day India on December 10, 2024, in Delhi! 🌏
    This is your chance to connect with peers to discuss ideas & progress in securing open source software!
    📣 CFP is open through November 3!
    events.linuxfoundation.org/sos
    #SOSSCommunity

  16. 💬 The conversations don’t end at #SOSSCommunity Day Europe! Check out our full event recap! 💡 From key sessions to TTX insights, it’s all here 👉 openssf.org/blog/2024/10/02/re

    Recordings and photos are now available. Relive the moment as we recap some of the exciting conversations from the event!

    📹 Recordings: youtube.com/playlist?list=PLVl
    📷 Photos: flickr.com/photos/openssf/albu

  17. 🔴 Table Top Exercise (TTX) is back and live now! Join Daniel Appelquist (Samsung Electronics), Kairo Araujo (TestifySec), Georg Kunz (Ericsson), and moderator Katherine Druckman (Intel Corporation) for a 90-minute interactive session simulating a security incident response. 🛡️ #OSSSecurity #SOSSCommunity #OSSummit

  18. 🚨 Ross Bryant from Phylum talks about Nation-State Threats in the Open Source Software Supply Chain at #SOSSCommunity Day. Ross talks about how the Lazarus Group targeted developers with malicious npm packages to steal cryptocurrency. Discover how evolving tactics in 2023-24 pose ongoing risks to the OSS ecosystem. 🔒🌐 #OSSummit

  19. 🌐🔒 Daniel Appelquist from Samsung Electronics shares insights on Web Developer Security: Best Practices & Beyond. Learn about the latest security standards, new W3C groups, and outcomes from the "Secure the Web Forward" workshop aimed at enhancing web security for developers. 🚀🔐 #SOSSCommunity #OSSummit

  20. David Mather & Bart Karas from Ericsson present Secure Coding Guide for Python, a new OpenSSF initiative to help Python developers tackle security challenges. 🔒💻 #SOSSCommunity #OSSummit

  21. 🔐 Kairo Araujo (TestifySec) & Martin Vrachev discuss "Securing Content Distribution with RSTUF," an incubating OpenSSF project. They talk about RSTUF simplifies TUF adoption for securing repositories like PyPI & RubyGems, and explore its use in private repositories. 🚀🔏 #SOSSCommunity #OSSummit

  22. 🔐 Mihai Maruseac from Google talks about how cryptographic signing ensures the integrity & provenance of ML models, strengthening the AI supply chain and building trust between producers and users. 🤖🔏
    #SOSSCommunity #OSSummit

  23. 🔍 Georg, Miguel, Ana, and Wietse discuss how to evaluate the long-term health and sustainability of OSS libraries, especially in large-scale deployments using Kubernetes.🌱🔒
    #OSSummit #SOSSCommunity

  24. 🚀 Joseph from GitHub talks about how gamification transforms security training from a chore into an engaging experience. Learn about the success of gh.io/securecodegame, and explore the impact on code security and team communication! 🎮🔒
    #SOSSCommunity #OSSummit

  25. 🔐 Welcome Datadog, G-Research, HeroDevs, Keyfactor, Protect AI, and SIGHUP to OpenSSF! 🎉 Congrats to Paolo Mainardi on receiving the Golden Egg Award for his contributions to OSS security.

    Learn more: openssf.org/press-release/2024

    #SOSSCommunity

  26. 🔍 📚Abdullah Garcia from J.P. Morgan explores a risk-based approach to software supply chain security. Learn how to analyze your processes for software ingestion, integration, and testing to address Supplier Risk, especially in open source software. Discover how to adapt to undetected attacks and implement essential changes in your tools and processes! 🛠️🔒 #SOSSCommunity #OSSummit

  27. 🔒 Zoran Regvart from Red Hat talks about enforcing organizational policies with the Enterprise Contract. Learn how to ensure container images comply with security standards using Sigstore signatures and in-toto attestations. This session is perfect for both beginners and those familiar with the Sigstore community! 🛡️ #SOSSCommunity #OSSummit

  28. 🚀 Adolfo García Veytia from Stacklok talks about how the adoption of OpenVEX in Go security tooling enables seamless, automated VEX streams without human intervention. Dive into the VEX document and explore the highlights of the evolving OpenVEX ecosystem! 🔍📜 #SOSSCommunity #OSSummit

  29. 🔒 Deb Nicholson from Python Software Foundation & Rebecca Rumbul from Rust Foundation discuss strategies for fostering good security hygiene and building consensus, while contrasting bottom-up vs. top-down approaches. #SOSSCommunity #OSSummit

  30. 🌌 Join Christopher Robinson ("CRob") for the "Hitchhikers' Guide to the Vulniverse!" 🛸 Don’t panic! Learn how to navigate the crazy acronyms and standards in vulnerability management. From CVE to VEX, learn how to find, fix, and share vulnerabilities more effectively. 🧑‍🚀🔧

    #SOSSCommunity #OSSummit