34:36 From Kubernetes With ♥ Open Tools For Open, Secure Supply Chains - Adolfo García Veytia, Chainguard The Linux Foundation
42:18 Improving Package Repository Security – From White Papers to Practice - Jussi Kukkonen, Google The Linux Foundation
45:08 What’s in a Name? Vulnerabilities, SBOMs, and the Challenge of Software Identity - Justin Murphy The Linux Foundation
17:04 Trusted-SBOM: On the Critical Importance of Verifying SBOMs - Haoxiang Zhang & Ahmed E. Hassan The Linux Foundation
1:20:52 Secure Python Packaging & Release Using Continuous Deployment - Martin Vrachev & Jussi Kukkonen The Linux Foundation
31:37 Composing the Ultimate SBOM - Ivana Atanasova & Velichka Atanasova, VMware The Linux Foundation
38:57 Making Fuzzing Part of Your Software Development Lifecycle - Jonathan Metzman, Google The Linux Foundation
41:42 Tracking Attackers in Open Source Supply Chain Attacks: The New Frontier- Tzachi ( Zack) Zorenshtain The Linux Foundation
40:06 How to Identify and Avoid Cracks and Bumps in your Digital Infrastructure? By Consi... Johan Linåker The Linux Foundation
40:54 Sponsored Session: Because Security Matters: Securing Your Open Sourc... Michal Svec & Stacey Miller The Linux Foundation
19:56 Do You Know What's in the Software You Run? Introducing GitBOM - Nell Shamrell-Harrington, Microsoft The Linux Foundation
39:10 Privacy-preserving Approaches to Transparency Logs - Hayden Blauzvern, Google The Linux Foundation
44:55 VEXing Open Source Security: Vulnerability Data for Everything - Andrew Martin & Andres Vega The Linux Foundation
39:39 Attesting Practically: Exploring the Glue Behind Secure Runtime Environments - Jim Bugwadia, Nirmata The Linux Foundation
39:34 Sponsored BoF: Baking a Cake with Supply Chain Tooling - Jeffrey Sica, CNCF The Linux Foundation
10:08 Lightning Talk: Scoring Dependencies to Detect “Weak Links” in your Open-source So... Ashish Bijlani The Linux Foundation
41:40 Sponsored Session: Dependencies: Do's and Don'ts - Guy Bar Gil & Rhys Arkins, Mend The Linux Foundation