The State of the open-source supply-chain

30 Sept 2026
Tech Hub Stage
Tech Hub Stage
Cheaper software means more dependencies, and more dependencies mean more attack surface. Drawing on Ossprey's research into recent npm and PyPI campaigns, Valentino examines what AI-accelerated development has genuinely changed about open-source supply chain risk and why shortening the window between a malicious package landing and being caught is increasingly crucial.
Speakers
Valentino Duval
Valentino Duval, Security Software Engineer - OSSPREY