
121 people have registered for this event
You don't write 90% of the code running in your production systems — open-source dependencies do. This session explores the rapidly evolving threat landscape of software supply chain attacks through real-world case studies (XZ Utils backdoor, npm mass compromises, self-propagating worms), explains why these attacks are accelerating, and gives every attendee a practical self-assessment to understand their own exposure. Walk away knowing exactly where your blind spots are — and what to do about them.
Level
Introductory — suitable for developers, DevOps engineers, team leads, and anyone shipping software with open-source dependencies. No prior security expertise required.
Key Outcomes / What Attendees Will Learn
Understand what "software supply chain" means and why it's the #1 growing attack vector
See how real attacks (XZ Utils, NX Singularity, Shai-Hulud, chalk/debug compromise) exploited trust in open-source ecosystems
Learn the patterns attackers use — stolen tokens, social engineering maintainers, typosquatting, self-propagating worms
Leave with one concrete action they can take immediately (audit their dependency tree)
📌 This session is designed for working professionals only.
📅 Agenda
11:00 AM – 11:30 PM
Check-ins, networking, high tea & snacks ☕
11:30 PM – 11:45 PM
Welcome note, opening session & introduction to the community 🎤
11:45 PM – 12:30 PM
Talk session followed by ❓Q&A 🎤
12:30 PM – 1:00 PM
Photo session, quiz, and engaging activities with swag giveaways 📸 🎁
1:00 PM – 2:00 PM
Networking & lunch 🍽️
Atlassian
Principal Security Engineer
Sunday, August 23, 2026
5:30 AM – 8:30 AM (UTC)
Optimizory Technologies
Software Engineer