Pozor, nahajate se na testni strani. Informacije, ki so na voljo na spetnem mestu, niso uradne in niso uporabne, vprašljiva pa je tudi njihova verodostojnost.

Ta spletna stran hrani piškotke, da bi vam zagotovili boljšo uporabniško izkušnjo in popolno funkcionalnost te strani.

Analitične piškotke uporabljamo s storitvijo Google Analytics, samo z vašo privolitvijo. Sprejemam Zavrnitev Več informacij

You trust the software. But Can you trust its Components?

Predavanje je v angleškem jeziku.

Vast majority of organizations rely on far more software they procure than they develop themselves. Commercial applications, open-source libraries, containers, firmware, embedded systems and supplier-provided binaries have become essential parts of virtually every IT environment, yet organizations often have limited visibility into what these software artifacts actually contain. An SBOM can provide valuable insight into software composition, but what happens when source code is unavailable, software comes from a third party, or the delivered artifact does not fully match what was declared? And how can we check? This session explores hidden risks in the software supply chain and demonstrates how binary analysis can identify open-source and third-party components inside executables, libraries, containers and firmware without access to source code.

Andrej Golob

Co.Next d.o.o.

Andrej Golob is a cybersecurity architect and consultant with more than 20 years of experience designing, implementing and evaluating security solutions for enterprise and critical infrastructure environments. His work spans cybersecurity architecture, application and software supply chain security, network security, Zero Trust, security operations and regulatory resilience. He works with organizations on translating complex security challenges into practical architectures and controls, with a particular focus on technologies that reduce exposure and provide measurable security assurance.

Milan Gabor

Viris

Milan Gabor je certificirani etični heker in rad analizira, kreka, heka in analizira razne informacijske sisteme. Je lastnik in direktor podjetja Viris. Poleg vsega tega uživa v predavanjih in obiskih hekerskih konferenc. Še vedno sanja o letenju z jadralnim padalom.

Ostala predavanja

Rdeča ekipa ne spi več

300 NSI

Red vs Blue: AI Edition

300 NSI

Okrogla miza na temo informacijske varnosti

100 NSI

Komentiranje v NTK aplikaciji je mogoče za potrjene udeležence NT konference.

iPhone Android