Trust, Track, and Verify: Securing AI Pipelines End-to-End - Adolfo Garcia & Jun (Victor) Lu

Presenters Adolfo Garcia Jun (Victor) Lu Source OpenSource SecurityCon NA 2025 Securing the Future: Building Trust in AI with SBOMs and Model Signing 🛡️✨ The AI revolution is here, and with it comes an exciting wave of innovation. But as we harness the power of artificial intelligence, a critical question arises: how do we ensure it’s secure and trustworthy? That’s precisely the challenge the tech world is tackling head-on, and at a recent conference, the conversation around AI governance and security took center stage. Get ready, because we’re diving deep into how we can build a more secure AI future, one component at a time! 🚀 ...

November 24, 2025 · 6 min

Driving Policy To Secure the Open Source Ecosystem - Jack Cable, Corridor

Presenters Jack Cable Source OpenSource SecurityCon NA 2025 Securing the Digital Foundation: How Policy and AI are Reshaping Open Source Security 🚀 Hey tech enthusiasts! Ever stopped to think about the invisible scaffolding that holds up so much of our digital world? That’s right, we’re talking about open-source software (OSS). And as the digital landscape evolves at lightning speed, so too must our approach to securing this vital foundation. Jack Cable, co-founder and CEO of Corridor, recently shared some fascinating insights on how government policy and the rise of AI are dramatically changing the game for OSS security. Let’s dive in! 🌊 ...

November 24, 2025 · 5 min

Sponsored Keynote: Breaking Up with Long-lived Secrets: Secure Automation in the Mode... Billy Lynch

Presenters Billy Lynch Source OpenSource SecurityCon NA 2025 Long Live Secrets? Let’s Talk Short-Lived Credentials for a More Secure Software Supply Chain! 🚀 Hey tech enthusiasts! Ever felt like managing secrets in your software supply chain is a bit like juggling chainsaws? You want to keep things secure, but sometimes the established practices feel… well, a little less than ideal. That’s exactly the sentiment Billy Lynch, a Software Engineer at Chainbound, shared at a recent tech conference, and it’s a topic that deserves our attention. ...

November 24, 2025 · 4 min

You Can Sign It, But Can You Trust It? Securing the Compilation Process - Yaxuan(Alice) Wen

Presenters Yaxuan(Alice) Wen Source OpenSource SecurityCon NA 2025 Securing the Build: How to Protect Your Software’s Foundation 🛠️ Hey tech enthusiasts! Ever stopped to think about what happens before your favorite software hits your desktop or phone? The journey from source code to a polished application is a complex one, and a critical, yet often overlooked, stage is compilation. Today, we’re diving deep into why this stage is a prime target for attackers and how we can fortify it, thanks to some groundbreaking research presented at a recent tech conference. ...

November 24, 2025 · 6 min

How Secure Is Academic Open Source? Insights From the UC OSPO Network - Juanita Gomez

Presenters Juanita Gomez Source OpenSource SecurityCon NA 2025 Unveiling the Security Secrets of Academic Open Source 🛡️: A Deep Dive into UC System Projects Ever wondered about the security of the open source projects born from our academic institutions? Juanita, a PhD candidate at UC Santa Cruz and a dedicated Python community member, recently pulled back the curtain on the open source landscape within the University of California (UC) system. Her groundbreaking research reveals a picture that’s both fascinating and, frankly, a little concerning when it comes to security best practices. Let’s dive into what she discovered! 🚀 ...

November 24, 2025 · 6 min