
What we’re about
This is a group for anyone interesting in application security, reverse engineering, ethical hacking, penetration testing, mobile hacking, wireless hacking, network security, cloud security etc. All skill levels are welcome. We'll meet monthly basis and talk about recent cyber security events. We'll have at least one technical presentation from a talented cyber security expert.
<br>
Join us on our Slack Workspace
You can also find some of the recordings of previous sessions on our Youtube Channel
If you want to speak in one of our events please fill out the Speaker Form
Upcoming events
3

The Well Known and Hidden Risks of Open Source Software Reuse
Endor Labs, 658 High St., Palo Alto, CA, USAgenda:
6:00 - 6:15pm: Introduction
6:15 - 7:00pm: Jamie Scott, CISSP, CCSP - The well known and hidden risks of open source software reuse
7:15 - 8:00pm: Networking
Summary of the talk:
While known vulnerabilities and out-of-date components seem like apparent risks, OSS has several other key risks that should be considered as well. In this talk, we will cover the Top 10 OSS Risks. This includes common considerations such as known vulnerabilities and unmaintained or outdated software but also other key risks such as the compromise of a legitimate package, license risks, and excessive use of dependencies. This talk will feature the Top 10 OSS Risks https://owasp.org/www-project-open-source-software-top-10/ and include examples and case studies of notable OSS incidents, such as the recent npm worm, tied to the risks discussed. It will also provide actionable takeaways for security and technology leaders to equip them to securely consume and utilize OSS in their enterprise environments and software/products while mitigating some of the most relevant risks associated with OSS.
Speaker bio:
Jamie Scott, CISSP, CCSP is a recovering cybersecurity practitioner turned product manager building the next generation of dependency management solutions at Endor Labs. Previously Jamie was Product Manager at Redis and StackRox (Acquired by Red Hat in Feb 2021) where he was an open source contributor and leader for both projects. Jamie remains an active contributor to the cybersecurity community as co-author and contributor to several benchmarks as a volunteer consultant for the Center for Internet Security.13 attendees
Past events
83



