$ cat /var/log/events.log
Events & Appearances
Conferences, podcasts, webinars, and meetups. Come say hi.
## upcoming
## past
### 2025
Teknik - Don't Go with the Flaw
,
Teknik - Split-Second Side Doors: How Bot-Delegated TOCTOU Breaks The CI/CD Threat Model
, ,
Supply Chain Warfare: CI/CD Threats and Open Source Security
Under the Radar: How we found 0-days in the Build Pipeline of OSS Packages
Panel sur la Cybersécurité dans les chaînes d'approvisionnement
OWASP AppSec Days France 2025
Living Off the Pipeline: From Supply Chain 0-Days to Predicting the next XZ-like attacks
Living Off the Pipeline / À l'Ombre du Pipeline
Living Off The Pipeline: From Supply Chain 0-Days to Predicting the Next XZ-Like Attacks
Teknik - Living Off the Pipeline: From Supply Chain 0-Days to Predicting the next XZ-like attacks
Living Off The Pipeline: From Supply Chain 0-Days to Predicting the next XZ-like attacks
AppSec Q&A
Spécial - Panel à NorthSec 2025
Panel sur la valeur du DevSecOps dans les processus de GIA
The Open Source Security Crisis: Is Trust the Weakest Link in Supply Chain?
Why do we keep ignoring CI security
Securing the Software Supply Chain
### 2024
Arbitrary Code Execution 0-day in Build Pipelines
Under The Radar: How we found 0-days in the Build Pipeline of OSS Packages
Under The Radar: How we found 0-days in the Build Pipeline of OSS Packages
I'll Buy You A Poutine
Teknik - Build Pipeline Supply Chain Attack
Under the Radar: How we found 0-days in the Build Pipeline of OSS Packages
,
Under the Radar: How We Found 0-Days in the Build Pipeline of OSS Packages
,