Chaos Computer Club - archive feed

Chaos Computer Club - archive feed

By CCC media teamTechnology
Download on the App Store

Chaos Computer Club - archive feed episodes

  • Enhancing TensorFlow Security: Secure Software Development practices for developing a secure ML framework (osc22)
    As the world moves to using machine learning more and more, a question arises of how to prevent cyber criminals from attacking systems using ML frameworks. In this talk, we will cover why machine learning needs security practices and how we develop TensorFlow to be secure. We will discuss topics such as fuzzing and code transformations for secure software development with a focus on how these are applied within TensorFlow ecosystem.
    As the world moves to using machine learning more and more, a question arises of how to prevent cyber criminals from attacking systems using ML frameworks. In this talk, we will cover why machine learning needs security practices and how we develop TensorFlow to be secure. We will discuss topics such as fuzzing and code transformations for secure software development with a focus on how these are applied within TensorFlow ecosystem.
    about this event: https://c3voc.de
    36 min
  • HPC deployment with warewulf4 (osc22)
    warewulf4 is a rewrite of the well known warewulf cluster management tool in golang. With this new iteration its possible to leverage the possibilities which emerged with broad use of containers. The origins of warewulf4 is the hpcng community which is/was also behind projects like Apptainer (former known as Singularity), Centos and Rocky linux.
    A basic setup of a HPC cluster and the key concept of the configuration mechanism of warewulf4 are covered in this talk.
    warewulf4 is a rewrite of the well known warewulf cluster management tool in golang. With this new iteration its possible to leverage the possibilities which emerged with broad use of containers. The origins of warewulf4 is the hpcng community which is/was also behind projects like Apptainer (former known as Singularity), Centos and Rocky linux.
    A basic setup of a HPC cluster and the key concept of the configuration mechanism of warewulf4 are covered in this talk.
    about this event: https://c3voc.de
    18 min
  • (open)SUSE Product security (osc22)
    This talk will introduce the SUSE Product Security team, who handles the
    software security processes for openSUSE and also SUSE Linux Enterprise.
    The SUSE Product Security work is split into "reactive" and "proactive"
    areas and engineering groups these days.
    Reactive work refering to what is traditionally known as "security
    incident response", while proactive refers to security audits, design
    reviews and related areas of secure software development.
    The talk will focus on the reactive side, giving statistics, and talk
    about some highlights from the last year.
    Also bringing a small overview over how closing the leap gap changes
    affects the openSUSE Maintenance process.
    This talk will introduce the SUSE Product Security team, who handles the
    software security processes for openSUSE and also SUSE Linux Enterprise.
    The SUSE Product Security work is split into "reactive" and "proactive"
    areas and engineering groups these days.
    Reactive work refering to what is traditionally known as "security
    incident response", while proactive refers to security audits, design
    reviews and related areas of secure software development.
    The talk will focus on the reactive side, giving statistics, and talk
    about some highlights from the last year.
    Also bringing a small overview over how closing the leap gap changes
    affects the openSUSE Maintenance process.
    about this event: https://c3voc.de
    35 min
  • Remote Attestation in MicroOS (osc22)
    Recently MicroOS can be installed with remote attestation, using the TPM as a root of trust and Keylime as a service to report and verify the status of our systems.
    In this talk we will see what is a TPM, how Keylime can be installed in MicroOS and used to monitor the health of our system in production and what to do when we detect a compromised system.
    Recently MicroOS can be installed with remote attestation, using the TPM as a root of trust and Keylime as a service to report and verify the status of our systems.
    In this talk we will see what is a TPM, how Keylime can be installed in MicroOS and used to monitor the health of our system in production and what to do when we detect a compromised system.
    about this event: https://c3voc.de
    36 min
  • The SUSE QE Tools team - Who we are and what we do (osc22)
    The SUSE QE Tools Team - Who we are and what we are doing.
    This talk will give an overview of who is the SUSE QE Tools team, what is in our responsibility, what we did in the past time and what we do. The products that we care about will be presented and the workflows of the team will be shown. Opportunities for contributions will be discussed.
    https://v.gd/okurz_osc22
    The SUSE QE Tools Team - Who we are and what we are doing.
    This talk will give an overview of who is the SUSE QE Tools team, what is in our responsibility, what we did in the past time and what we do. The products that we care about will be presented and the workflows of the team will be shown. Opportunities for contributions will be discussed.
    https://v.gd/okurz_osc22
    about this event: https://c3voc.de
    22 min
  • SLE BCI: Container Images for development and production (osc22)
    The SLE Base Container Images (BCI) want to create a flexible developer experience that provides, integrates with, and supports language native tools and workflows by offering a self-contained environment targeting a specific version of any given programming language ecosystem to facilitate software development, testing and deployment.​ These images are meant to run on any Linux and K8s distributions, are freely redistributable and come with a pre-configured repository offering the same enterprise grade packages shipped by SUSE flagship product SUSE Linux Enterprise Server. The freely available repository offers a lighter set of packages carefully cherry-picked from the official SLES repositories, however it is possible to push an already purchased SLES subscription to these images hence having access to the full universe of packages available.
    The SLE Base Container Images (BCI) want to create a flexible developer experience that provides, integrates with, and supports language native tools and workflows by offering a self-contained environment targeting a specific version of any given programming language ecosystem to facilitate software development, testing and deployment.​ These images are meant to run on any Linux and K8s distributions, are freely redistributable and come with a pre-configured repository offering the same enterprise grade packages shipped by SUSE flagship product SUSE Linux Enterprise Server. The freely available repository offers a lighter set of packages carefully cherry-picked from the official SLES repositories, however it is possible to push an already purchased SLES subscription to these images hence having access to the full universe of packages available.
    about this event: https://c3voc.de
    33 min
  • Security for (not only openSUSE) developers (osc22)
    General security recommendations for openSUSE developers. This includes specific recommendations on how to package software in a more secure ways and how to create a developer setup that is secure. For this we will shed some light on the specific challenges and quirks of the tool chains we use and how they relate to security.
    General security recommendations for openSUSE developers. This includes specific recommendations on how to package software in a more secure ways and how to create a developer setup that is secure. For this we will shed some light on the specific challenges and quirks of the tool chains we use and how they relate to security.
    about this event: https://c3voc.de
    35 min
  • Reporting bugs for openSUSE Leap (osc22)
    The way how we build openSUSE Leap has changed, so did the way how we report issues against it. This lightning talk will show you how to correctly report bugs for openSUSE Leap.
    https://en.opensuse.org/openSUSE:Submitting_bug_reports
    The way how we build openSUSE Leap has changed, so did the way how we report issues against it. This lightning talk will show you how to correctly report bugs for openSUSE Leap.
    https://en.opensuse.org/openSUSE:Submitting_bug_reports
    about this event: https://c3voc.de
    11 min
  • openSUSEway status, running other platforms (osc22)
    Whats up with openSUSEway? Current status.
    Sharing the results of running openSUSEway/sway on openSUSE MicroOS Desktop and Fedora.
    https://denisok.github.io/oSC/oSC22-openSUSEway.html
    Whats up with openSUSEway? Current status.
    Sharing the results of running openSUSEway/sway on openSUSE MicroOS Desktop and Fedora.
    https://denisok.github.io/oSC/oSC22-openSUSEway.html
    about this event: https://c3voc.de
    12 min
  • openSUSE on Arm (osc22)
    This talk is the annual review of openSUSE on Arm, mainly focused on AArch64, but it will also cover armv7 and armv6. At the end, we will have a quick look at the future and where the community could help.
    This talk is the annual review of openSUSE on Arm, mainly focused on AArch64, but it will also cover armv7 and armv6. At the end, we will have a quick look at the future and where the community could help.
    about this event: https://c3voc.de
    16 min

About Chaos Computer Club - archive feed

From the publisher's feed

Der Chaos Computer Club ist die größte europäische Hackervereinigung, und seit über 25 Jahren Vermittler im Spannungsfeld technischer und sozialer Entwicklungen.