No items found.
Event

Software Supply Chain (SSC) Security & Craft Beer

Date
February 12, 2025
Time
6:30 PM
Event Type
In person
Location
North America
Event Overview

We’re excited to feature Jamie Scott, Founding Product Manager at Endor Labs, at this meetup, who will deliver an insightful session titled “The Hidden Risks of Software Re-use: OWASP Top 10 for Open Source.

Session Overview:
While known vulnerabilities and out-of-date components seem like apparent risks, OSS has several other key risks that should be considered as well. In this talk, we will cover the Top 10 OSS Risks. This includes common considerations such as known vulnerabilities and unmaintained or outdated software but also other key risks such as the compromise of a legitimate package, license risks, and excessive use of dependencies. This talk will feature the Top 10 OSS Risks https://owasp.org/www-project-open-source-software-top-10/ and include examples and case studies of notable OSS incidents tied to the risks discussed. It will also provide actionable takeaways for security and technology leaders to equip them to securely consume and utilize OSS in their enterprise environments and software/products while mitigating some of the most relevant risks associated with OSS.

Don’t miss this thought-provoking discussion on practical steps and processes that you can implement to minimize the risks associated with software and dependency re-use within your environments.

Join us for Software Supply Chain (SSC) Security & Craft Beer!

OpenAI Codex with GPT-5.6 Sol: competitive, zero cheating, one unique Django fix
OpenAI Codex with GPT-5.6 Sol: competitive, zero cheating, one unique Django fix
Read more
Endor Labs’ AI SAST Finds Zero Day Memory-Amplification DoS in Anthropic’s buffa library
Endor Labs’ AI SAST Finds CVE-2026-55407: Memory-Amplification DoS in buffa
Read more
Open source carries the world. Patching it at Mythos-scale can't fall to maintainers alone.
Read more
OpenAI Codex with GPT-5.6 Sol: competitive, zero cheating, one unique Django fix
OpenAI Codex with GPT-5.6 Sol: competitive, zero cheating, one unique Django fix
Read more
Endor Labs’ AI SAST Finds Zero Day Memory-Amplification DoS in Anthropic’s buffa library
Endor Labs’ AI SAST Finds CVE-2026-55407: Memory-Amplification DoS in buffa
Read more
Open source carries the world. Patching it at Mythos-scale can't fall to maintainers alone.
Read more

Want to stay in the loop?

Sign up for our newsletter.