Loading…
The OpenSSL Conference is the global meeting place for the people who build, deploy, govern, and rely on secure digital infrastructure. It brings together developers, security engineers, researchers, policymakers, enterprises, legal and compliance professionals, and community contributors, all united by a shared commitment to stronger open-source security.
arrow_back View All Dates
Wednesday, October 14
 

09:00 CEST

OpenSSL Corporation Keynote
Wednesday October 14, 2026 09:00 - 09:30 CEST
A look at where OpenSSL is heading from the Corporation's perspective: what the past year changed, and the priorities shaping the future — from post-quantum cryptography to long-term sustainability of the world's most widely deployed cryptographic software.
Speakers
avatar for Tim Hudson

Tim Hudson

Dev Team, OpenSSL
Tim Hudson has been involved in system security for more than 20 years. Tim's day job is as the CTO at Cryptsoft where he provides advice and guidance on security technology design and architecture. Tim is involved in KMIP, PKCS#11, FIPS140, OASIS and SNIA and is a long time OpenSSL... Read More →
Wednesday October 14, 2026 09:00 - 09:30 CEST
Room 1
  Keynote, Keynote

09:30 CEST

From Zero to Hero: A Student's Journey Contributing to Production Cryptography
Wednesday October 14, 2026 09:30 - 09:45 CEST
A student's journey: build systems, navigating a mature codebase, contribution workflows, and academic vs production crypto, mentored by IBM.
Speakers
SE

Stefan Eberle

MSc Computer Science (University of Konstanz), Independent
I am currently student at the university of Konstanz (Germany) and writing my masters thesis in collaboration with IBM about some improvement of a IBM-Z specific OpenSSL functionality. I actually studied to be a teacher, but in the end found my interest in Crypto.
Wednesday October 14, 2026 09:30 - 09:45 CEST
Room 4
  Community, Talk

09:30 CEST

Nobody Told Maintainers They Were Saving The World. Now Is The Time.
Wednesday October 14, 2026 09:30 - 10:00 CEST
Walks through Red Hat's decades-long investment in open source security and presents three structural responses to the maintainer sustainability crisis: Lightwell (a five-billion-dollar commitment to automated vulnerability remediation), Akrites (a Linux Foundation shared Security Incident Response Team), and Red Hat's Responsible CRA Stewardship approach. (Sponsor talk — Red Hat.)
Speakers
RZ

Roman Zhukov

Red Hat
Roman is a cybersecurity expert and leader with 20+ years of experience securing complex systems and products. As Principal Architect at Red Hat, he drives open-source security strategy and cross-industry collaboration. Formerly, he led Product Security & Privacy for Data Center and... Read More →
Wednesday October 14, 2026 09:30 - 10:00 CEST
Room 1
  Community, Talk

09:30 CEST

Shipping OpenSSL downstream and its challenge
Wednesday October 14, 2026 09:30 - 10:00 CEST
Distribution maintainers as system integrators: maintaining multiple OpenSSL versions across OS releases while keeping them secure and compatible.
Speakers
PM

Pedro Monreal

Software Engineer - Cryptography, SUSE Software Solutions
Software Engineer at SUSEkey member of the Cryptography Group. As a dedicated maintainer of OpenSSL and other cryptographic libraries. His work also involves participating in FIPS certification rounds for SUSE, where he focuses on the implementation of FIPS requirements... Read More →
LM

Lucas Mülling

Linux Distribution Engineer Cryptography, SUSE Software Solutions
Computer scientist with experience in PKI, protocols, and cryptography. Maintainer for SUSE.
AY

Angel Yankov

Linux Distribution Engineer Cryptography, SUSE Software Solutions
Embedded engineer, transitioned to maintaining cryptographic libraries at SUSE.
Wednesday October 14, 2026 09:30 - 10:00 CEST
Room 3
  Community, Talk

09:30 CEST

A library-agnostic hybrid classic/PQ OpenSSL provider — built with AI
Wednesday October 14, 2026 09:30 - 10:00 CEST
In last year's presentation on oqs-provider, we concluded with proposed next work, namely an OpenSSL provider for hybrid classic/PQ logic independent of a specific PQ library. This talk presents how this new provider was created with the help of an AI, its functional capabilities and the lessons learned: the former dwarf the ones of the original oqs-provider, and the latter may be helpful for others using the same tooling in the context of a somewhat security-related software component.
Speakers
MB

Michael Baentsch

Independent
Michael Baentsch is the original author and long-time maintainer of oqs-provider, the OpenSSL provider that brought experimental post-quantum cryptography to OpenSSL via liboqs. He presented oqs-provider at the OpenSSL Conference 2025 in Prague; this talk covers the follow-up he proposed... Read More →
Wednesday October 14, 2026 09:30 - 10:00 CEST
Room 2
  Technical, Talk

09:45 CEST

Securing the Next Generation: An OpenSSL Youth Outreach Strategy
Wednesday October 14, 2026 09:45 - 10:00 CEST
An OpenSSL youth outreach strategy: a sustainable ecosystem also needs informed users who understand what cryptography does for them.
Speakers
CJ

Carla Jedani

-, Individual
Carla Jedani is a lawyer, founder and researcher. She is the founder of a civic engagement platform for Gen Z built on open source, open data and federated governance principles. Her published work reflects more than two decades of engagement with open source principles and their... Read More →
Wednesday October 14, 2026 09:45 - 10:00 CEST
Room 4
  Community, Talk

10:00 CEST

Morning Tea
Wednesday October 14, 2026 10:00 - 10:30 CEST
Wednesday October 14, 2026 10:00 - 10:30 CEST
All Rooms
  Break
  • format csv

10:30 CEST

TLS keyshare caching for faster handshakes
Wednesday October 14, 2026 10:30 - 11:00 CEST
Caching server keyshare preferences after the first handshake to avoid slow TLS 1.3 retry round-trips during crypto transitions.
Speakers
PK

Panos Kampanakis

Principal Security Engineer, AWS
Panos is a Principal Security Engineer at AWS. He has experience with cybersecurity, applied cryptography, security automation, and vulnerability management. He has coauthored publications on cybersecurity and participated in various security standards bodies to provide common interoperable... Read More →
Wednesday October 14, 2026 10:30 - 11:00 CEST
Room 1
  Community, Talk

10:30 CEST

From Copilot to Commit: Handling AI-Generated Code in Open Source Crypto Libraries
Wednesday October 14, 2026 10:30 - 11:00 CEST
The legal mechanics behind AI-assisted contributions to a security-critical project like OpenSSL: copyright, licensing, operational safety.
Speakers
DL

Dr. Lina Böcker

Partner, Osborne Clarke GmbH & Co KG
Dr Lina Böcker is a technology lawyer specialising in Free and Open Source Software (FOSS) compliance, IT law and AI regulation. She advises software vendors, open source projects, OEMs and research institutions on licence compliance, contributor workflows and “safe” use of AI-assisted... Read More →
Wednesday October 14, 2026 10:30 - 11:00 CEST
Room 2
  Security, Talk

10:30 CEST

Finding Timing Side Channels When Internal Clocks Are Hidden
Wednesday October 14, 2026 10:30 - 11:00 CEST
Evaluating Java Card smart cards for timing side channels when the platform hides internal timing, using noisy host-side measurements.
Speakers
VH

Veronika Hanulíková

PhD candidate, Masaryk University
I am a PhD candidate and security researcher at Masaryk University and a member of the Center for Research on Cryptography and Security (CRoCS), specializing in cryptography, security analysis, and secure system design. My research focuses on the security of cryptographic implementations... Read More →
Wednesday October 14, 2026 10:30 - 11:00 CEST
Room 4
  Technical, Talk

10:30 CEST

How small can you (reasonably) get an ML-DSA and ML-KEM implementation?
Wednesday October 14, 2026 10:30 - 11:00 CEST
Speed-vs-memory tradeoffs in ML-DSA and ML-KEM: key representations and deferring expansion until values are needed.
Speakers
MO

Mike Ounsworth

Lead open source maintainer, Cryptic Forest Software
Mike Ounsworth is a software security architect and cryptographic protocol designer. He is deeply involved in the Post-Quantum transition, particularly in re-designing IETF networking protocols to accommodate the new PQC algorithms, dual-algorithm hybrids, and mechanisms to ease migration... Read More →
Wednesday October 14, 2026 10:30 - 11:00 CEST
Room 3
  Technical, Talk

11:00 CEST

Cryptsoft — Session Title Coming Soon
Wednesday October 14, 2026 11:00 - 11:30 CEST
Session details are being finalized with the sponsor and will be published here as soon as they are available.
Wednesday October 14, 2026 11:00 - 11:30 CEST
Room 1
  Business, Talk

11:00 CEST

Navigating the Post-Quantum Transition: Integrating FAEST and Classic McEliece into libOQS
Wednesday October 14, 2026 11:00 - 11:30 CEST
Practical challenges and implementation details of integrating FAEST and an updated Classic McEliece into libOQS.
Speakers
NA

Norman Ashley

Software Engineer, Cisco Systems
Software Engineer working crypro libraries at Cisco. Contributor to OQS
Wednesday October 14, 2026 11:00 - 11:30 CEST
Room 3
  Community, Talk

11:00 CEST

Self-Encrypting Disks in Linux - Fast, Expensive, and Mostly Harmless
Wednesday October 14, 2026 11:00 - 11:30 CEST
Adding Opal2 self-encrypting drive support to cryptsetup: what we achieved, what we found, and why industry standards miss each other.
Speakers
MB

Milan Brož

Research & Development Manager, OpenSSL Corporation
A grumpy developer and researcher in the area of storage security. Linux cryptsetup and LUKS maintainer. For more info see https://mbroz.fedorapeople.org/talks/
Wednesday October 14, 2026 11:00 - 11:30 CEST
Room 2
  Community, Talk

11:00 CEST

Where Post-Quantum Migration Hurts a Wi-Fi IoT Endpoint
Wednesday October 14, 2026 11:00 - 11:30 CEST
Where PQC migration hurts a constrained Wi-Fi IoT endpoint: tight CPU/RAM/flash/link budgets against much larger PQ keys and signatures.
Speakers
MP

Martin Perešíni

Postdoctoral Research Assistant, Faculty of Information Technology, Brno University of Technology
Ing. Martin Perešíni, Ph.D., is a Postdoctoral Research Assistant in the Communication Systems Group (CSG) at the Department of Informatics (IFI), University of Zurich. He recently defended his Ph.D. at the Faculty of Information Technology, Brno University of Technology, where he works with the BlockSec@FIT... Read More →
Wednesday October 14, 2026 11:00 - 11:30 CEST
Room 4
  Technical, Talk

11:30 CEST

Bill Buchanan — Session Title Coming Soon
Wednesday October 14, 2026 11:30 - 12:00 CEST
Session details are being finalized with the speaker and will be published here as soon as they are available.
Speakers
avatar for Bill Buchanan

Bill Buchanan

Professor of Applied Cryptography, Edinburgh Napier University
William (Bill) J Buchanan OBE FRSE is a Professor of Applied Cryptography in the School of Computing, Edinburgh and the Built Environment at Edinburgh Napier University. He is a Fellow of the BCS and a Principal Fellow of the HEA. Bill was appointed an Officer of the Order of the... Read More →
Wednesday October 14, 2026 11:30 - 12:00 CEST
Room 1
  Security, Talk

11:30 CEST

Engineering Reality of CRA Compliance for Linux-based IoT Solutions
Wednesday October 14, 2026 11:30 - 12:00 CEST
Making a stock OpenWrt One router secure-by-design vs paper-compliant with the CRA: a gap assessment against Annex I.
Speakers
MK

Maxim Kostin

Solutions and Business Development, Tropic Square s.r.o.
I’m a technical business and solutions developer with more than 20 years of experience in embedded security, with expertise across PayTV and IoT solutions for both startups and corporates. I work at the intersection of secure boot, firmware signing, trusted updates, cryptography... Read More →
PP

Pavel Polach

Head of Product, Tropic Square s.r.o.
Pavel Polach is a product and engineering leader focused on secure technologies, embedded systems, and developer platforms. At Tropic Square, he led SDK and application development for secure hardware, balancing developer usability with technical robustness. In recent months, he transitioned... Read More →
Wednesday October 14, 2026 11:30 - 12:00 CEST
Room 4
  Security, Talk

11:30 CEST

Is the current cryptography testing and validation pipeline process capable of handling the impending Tsunami?
Wednesday October 14, 2026 11:30 - 12:00 CEST
The cryptographic community has been abuzz for a decade about everyone needing to be ready for Post Quantum Cryptography. In April 2016, NIST published NISTIR 8105, "Report on Post-Quantum Cryptography", a technical report assessing the threat that quantum computers pose to existing public-key cryptographic systems. The real question we should be asking ourselves by now: "Is the current cryptography testing and validation pipeline capable of handling the impending Tsunami?" Under the leadership at NIST/NCCoE, we have begun the challenging journey of transforming this problematic workflow from labor intensive to the speed of computing. As with any such endeavor, we began breaking the problem down into organized and achievable workflows starting with the validation of the Entropy Source, the Algorithms, and the Module itself. With any such endeavor under intense pressure and through a collaboration between highly focused practitioners, much has been accomplished, but we still have much more work to be done. The defining of protocols for the exchange of evidence between an accredited laboratory and a certifying body to prove conformance has indeed been revolutionary. However, without extensive analysis and improvement on the workflow for ALL stakeholders, we will hit a brick wall and come to an untimely collapse. The answer to our problem is not simply to claim "AI" (Artificial Intelligence) will solve everything. This talk will take the listener through the troubled past of slow, human-centric cryptographic validations and how we can enter the twenty-first century of fast, computer-centric accelerated, and repeatable validations through "IA" — "Intelligent Automation".
Speakers
SG

Shawn Geddis

Co-founder and CTO/CPO, Katalyst LLC
During his 25 years at Apple, Shawn drove the engineering work for Apple Platform Security Certifications and built Apple Inc.'s SECLAB (NVLAP accredited, first-party Crypto Testing and Validation Lab) while also delivering on the roles of lab manager, tooling architect/developer... Read More →
JG

Jasmine Geddis

Co-founder and CEO, Katalyst LLC
Jasmine is a natural born leader. Her passion for connecting with people is unrivaled and she is known as the "Great Connector". She has a gift for making fast and lifelong friends, on elevators, planes, and of course at conferences. Jasmine launched two healthcare startups in the... Read More →
Wednesday October 14, 2026 11:30 - 12:00 CEST
Room 3
  Security, Talk

11:30 CEST

HSM-Backed OpenPGP Signing for OpenSSL Releases: Architecture and Operations
Wednesday October 14, 2026 11:30 - 12:00 CEST
For most of OpenSSL's history a release was signed with the release manager's own OpenPGP key — the 1.1.1 and 3.0.0 tags carry signatures from different individuals. Automating the release process consolidated that onto one shared release key, but it was still a private key in a file on disk. Either way, the trust root for software that a large chunk of the internet depends on to build TLS was a file that could be copied. This talk covers moving that trust root onto hardware — an Entrust nShield HSM in FIPS 140-3 mode — without breaking release automation and without changing anything for verifiers. We cover: the two-tier key model (a Certify-only primary key under a card quorum, plus a signing subkey the pipeline uses unattended); sq-pkcs11, the open-source Rust CLI on Sequoia-OpenPGP we built to bridge OpenPGP and PKCS#11; the redesigned pipeline with an isolated signing stage; nshield-card-check, a small web app for custodians to verify their card and passphrase on demand with an audit trail; and generalizing the same HSM to sign RPM/DEB repos and Java code. Attendees leave with a concrete reference architecture that runs against SoftHSM2 as well as real hardware.
Speakers
DM

Dmitry Misharov

DevOps Engineer, OpenSSL Corporation
Dmitry Misharov is a Senior DevOps Engineer at OpenSSL Corporation, working on the infrastructure behind OpenSSL: release automation, the HSM-backed signing pipeline, and performance testing infrastructure. Dmitry designed and built the release-signing migration this talk covers... Read More →
Wednesday October 14, 2026 11:30 - 12:00 CEST
Room 2
  Technical, Talk

12:00 CEST

Lunch
Wednesday October 14, 2026 12:00 - 13:10 CEST
Wednesday October 14, 2026 12:00 - 13:10 CEST
All Rooms
  Break
  • format csv

13:20 CEST

The State of the OpenSSL Community
Wednesday October 14, 2026 13:20 - 13:50 CEST
Session details are being finalized with the speakers and will be published here as soon as they are available.
Speakers
avatar for Jon Ericson

Jon Ericson

Communities Manager, OpenSSL Foundation
Jon Ericson is the OpenSSL Foundation Communities Manager. He started his career as a C programmer for the US National Weather Service and NASA's Jet Propulsion Laboratory. When Stack Overflow launched in beta, Jon was an early contributor and later joined as a full-time community... Read More →
CW

Chris Ward

Community Manager, OpenSSL Corporation
The speaker's biography is being finalized and will be published here shortly.
Wednesday October 14, 2026 13:20 - 13:50 CEST
Room 2
  Community, Talk

13:20 CEST

Advancing Clarity Through Collaboration
Wednesday October 14, 2026 13:20 - 14:00 CEST
The CMUF Request for Guidance Working Group: how government, labs and industry create community-driven guidance for cryptographic modules.
Speakers
TW

Tricia Wolff

Security Reserch Engineer Technical Leader, Cisco Systems, Inc
Tricia Wolff is a Security Research Engineer Technical Leader at Cisco Systems, Inc., serving as an expert in Federal Information Processing Standards (FIPS). With over a decade of experience in cybersecurity, she shapes cryptographic compliance strategies across Cisco’s global... Read More →
Wednesday October 14, 2026 13:20 - 14:00 CEST
Room 3
  Community, Talk

13:20 CEST

The Security Response Process of the OpenSSL Library
Wednesday October 14, 2026 13:20 - 14:00 CEST
The history and current state of the OpenSSL Library security response process and policy, including the impact of AI-generated security reports.
Speakers
TM

Tomas Mraz

Chief Technology Officer, OpenSSL Foundation
Tomáš Mráz is the Chief Technology Officer at OpenSSL Foundation and also a member of the Board of Directors of OpenSSL Foundation. He joined the OpenSSL team in 2021 as a Software Developer after being a long-time maintainer of OpenSSL and other crypto packages in Red Hat Enterprise... Read More →
Wednesday October 14, 2026 13:20 - 14:00 CEST
Room 4
  Community, Talk

13:20 CEST

Artificial Insecurity: how AI threatens digital security and what we can do about it
Wednesday October 14, 2026 13:20 - 14:00 CEST
How the proliferation of LLMs impacts privacy and encryption, with a focus on at-risk communities.
Speakers
MK

Marcel Kolaja

Policy and Advocacy Director — Europe, Access Now
Marcel Kolaja is the Policy and Advocacy Director for Europe at Access Now, an organization defending and extending the digital rights of people and communities at risk. He leads a team of digital rights policy experts and drives the advocacy agenda at the intersection of human rights... Read More →
Wednesday October 14, 2026 13:20 - 14:00 CEST
Room 1
  Security, Talk

13:50 CEST

CRA and its Problematic Impacts on F/OSS
Wednesday October 14, 2026 13:50 - 14:20 CEST
The EU Cyber Resilience Act: scope, obligations on manufacturers and supply-chain actors, and its problematic impacts on F/OSS.
Speakers
PL

Pavel Loutocký

Assistant professor, Masaryk University
JUDr. Pavel Loutocký, Ph.D., BA (Hons) is an assistant professor at the Institute of Law and Technology, Faculty of Law, Masaryk University. He focuses in his research, teaching, and publishing activities on the regulatory aspects of electronic identification and trust services... Read More →
Wednesday October 14, 2026 13:50 - 14:20 CEST
Room 2
  Security, Talk

14:00 CEST

Daniel J. Bernstein — Session Title Coming Soon
Wednesday October 14, 2026 14:00 - 14:40 CEST
Session details are being finalized with the speaker and will be published here as soon as they are available. This session will be presented remotely.
Speakers
avatar for Daniel Bernstein

Daniel Bernstein

Research Professor, Department of Computer Science, University of Illinois Chicago
Prof. Daniel J. Bernstein designs cryptography to proactively reduce risks. His designs with large-scale deployment include X25519, Ed25519, ChaCha20, SipHash (co-designed with Jean-Philippe Aumasson), Streamlined NTRU Prime (with various co-designers), and Classic McEliece (with... Read More →
Wednesday October 14, 2026 14:00 - 14:40 CEST
Room 1
  Technical, Talk

14:00 CEST

Community panel: Distributions
Wednesday October 14, 2026 14:00 - 14:50 CEST
A distributions panel on upstream time-to-merge bottlenecks and how upstream, distros and enterprises can share the certification burden.
Speakers
LM

Lucas Mülling

Linux Distribution Engineer Cryptography, SUSE Software Solutions
Computer scientist with experience in PKI, protocols, and cryptography. Maintainer for SUSE.
Wednesday October 14, 2026 14:00 - 14:50 CEST
Room 3
  Community, Panel

14:00 CEST

Optimizing ML-KEM and ML-DSA with Vector Instructions and Mathematical Techniques
Wednesday October 14, 2026 14:00 - 14:50 CEST
Implementation techniques improving ML-KEM/ML-DSA efficiency on 128-bit vector architectures (IBM Z, POWER), combining vectorized arithmetic with maths.
Speakers
TK

Timo Keller

Cryptography Developer for Linux on Z, IBM Deutschland Research & Development
Timo Keller is a Cryptography Developer for Linux on IBM Z at IBM Deutschland Research & Development, Germany. He holds a PhD and a habilitation in number theory, arithmetic geometry, and computer algebra, and has served as a substitute associate professor in these fields. His current... Read More →
Wednesday October 14, 2026 14:00 - 14:50 CEST
Room 4
  Technical, Talk

14:20 CEST

Open Source: The Road to EU Sovereignty
Wednesday October 14, 2026 14:20 - 14:50 CEST
The EU's 2026 Open Source Strategy as a sovereignty turning point, and its loopholes, weak enforcement and thin SME support.
Speakers
AG

Alix Guillard

individual, individual
Worked as webmaster for several organisations including leading Linux distribution. Lead the Paris Linux user group before leaving France. Living and working in Czechia as a developer for 12 years.
Wednesday October 14, 2026 14:20 - 14:50 CEST
Room 2
  Community, Talk

15:00 CEST

Afternoon Tea
Wednesday October 14, 2026 15:00 - 15:30 CEST
Wednesday October 14, 2026 15:00 - 15:30 CEST
All Rooms
  Break
  • format csv

15:30 CEST

Building Cryptography on Locally Verified Entropy
Wednesday October 14, 2026 15:30 - 16:10 CEST
Cryptography as the transformation of entropy into security, and the case for locally verified entropy generation and delivery.
Speakers
JP

Jordi Prieto Gallego

Security Architect, Quside
Jordi Prieto Gallego works as Security Architect at Quside, leading compliance and certification programs covering entropy sources and cryptographic modules. His work focuses on certification strategy, cryptographic architecture and compliance with international security requirem... Read More →
Wednesday October 14, 2026 15:30 - 16:10 CEST
Room 4
  Security, Talk

15:30 CEST

Building a Fail-Closed Cryptographic Code LLM Support Assistant
Wednesday October 14, 2026 15:30 - 16:10 CEST
Lessons from a fail-closed RAG support assistant for Bouncy Castle, where LLM probabilism clashes with deterministic crypto.
Speakers
avatar for Francis Mendoza

Francis Mendoza

Cryptographic Software Engineer, Keyfactor, Inc.
Francis Mendoza is a Filipino-American computer scientist working at the intersection of applied cryptography and resilient distributed systems. He holds a B.S. and M.S. in Computer Science from Arizona State University, where his research focused on cybersecurity for critical infrastructure... Read More →
Wednesday October 14, 2026 15:30 - 16:10 CEST
Room 2
  Technical, Talk

15:30 CEST

DTLSv1.3 in OpenSSL
Wednesday October 14, 2026 15:30 - 16:10 CEST
DTLS 1.3 brings a variable-length unified header, encrypted sequence numbers, and an explicit ACK mechanism. This talk covers its implementation in OpenSSL.
Speakers
RH

Ryan Hooper

Technical Leader/Associate OpenSSL Foundation Engineer, Cisco Systems/OpenSSL Foundation
Associate OpenSSL Foundation Engineer on part-time secondment from his role as Software Developer at Cisco Systems. With years of hands-on experience on many different platforms across both TLS and IPsec stacks, Ryan brings deep expertise in secure communications. At OpenSSL Foundation... Read More →
Wednesday October 14, 2026 15:30 - 16:10 CEST
Room 3
  Technical, Talk

15:30 CEST

PLANTS and Merkle Tree Certificates
Wednesday October 14, 2026 15:30 - 16:10 CEST
Merkle Tree Certificates provide a post-quantum proof of name-to-key that avoids enormous PQ signatures on the wire.
Speakers
BB

Bob Beck

Software Engineer, OpenSSL Corporation
Bob was born in the USA, with his parents escaping to Canada in a balloon during the Nixon Regime. He gained much unix experience at an early age and a fasicnation with fiddling with network stacks led tohis finding of a used SparcStation in the early 90's, When NetBSD did not run... Read More →
AD

Andrew Dinh

Software Engineer, OpenSSL Corporation
Andrew is a smart guy who is Bob's co-conspirator for these talks. this bio needs to be fixed by Andrew.
Wednesday October 14, 2026 15:30 - 16:10 CEST
Room 1
  Technical, Talk

16:10 CEST

Why People Trust the Internet but Ignore What Protects It
Wednesday October 14, 2026 16:10 - 16:50 CEST
When security works it becomes invisible; the resulting adoption and explanation problem for cryptographic infrastructure.
Speakers
BP

Brandan Payne

Owner, Payne Point Media
Brandan Payne is an entrepreneur, speaker, and founder of Payne Point Media, where he helps organizations bridge the gap between complex technology and the people expected to buy, adopt, and trust it. His work focuses on human behavior, communication, marketing, and business strategy... Read More →
Wednesday October 14, 2026 16:10 - 16:50 CEST
Room 1
  Business, Talk

16:10 CEST

Shim in 2026: A Certificate Rotation and a Decade-Overdue OpenSSL Migration
Wednesday October 14, 2026 16:10 - 16:50 CEST
Shim ships a vendored, long-frozen OpenSSL in every UEFI Secure Boot distro. The story of finally migrating it plus a certificate rotation.
Speakers
avatar for Brian

Brian "bex" Exelbierd

Product Manager, Azure, Microsoft
Brian “bex” Exelbierd is a Principal Product Manager at Microsoft, where he shapes Azure’s upstream Linux strategy and is the product manager for Flatcar Container Linux. Previously, he spent a decade at Red Hat in roles spanning development, the open source program office... Read More →
Wednesday October 14, 2026 16:10 - 16:50 CEST
Room 4
  Community, Talk

16:10 CEST

Investigating cryptography deployments in security-certified products with sec-certs
Wednesday October 14, 2026 16:10 - 16:50 CEST
What can be learned about crypto library usage in CC/FIPS-certified products from public documents, using the sec-certs tool.
Speakers
YY

Yasir Yakup Demircan

PhD student, Masaryk University
Yasir is a PhD candidate at Masaryk University exploring the intersection of automated data science and security standardization. He leverages machine learning to scrutinize the efficacy of frameworks like Common Criteria (CC) and FIPS 140, proactively uncovering systemic security... Read More →
VM

Vashek Matyas

Professor, Masaryk University
Vashek (Václav) Matyáš is a Professor at Masaryk University, Brno, heading its Centre for Research on Cryptography and Security. His research interests relate to applied cryptography and security; with over 200 peer-reviewed papers and articles. He worked also with Cybernetica... Read More →
Wednesday October 14, 2026 16:10 - 16:50 CEST
Room 3
  Security, Talk

16:10 CEST

Testing PQC Timing Side-Channels
Wednesday October 14, 2026 16:10 - 16:50 CEST
Custom test harnesses and tlsfuzzer to measure timing variations in OpenSSL's ML-KEM and ML-DSA implementations for constant-time compliance.
Speakers
AK

Alicja Kario

Principal Quality Engineer, Red Hat
Alicja is a quality engineer specialised in cryptography at Red Hat. She is the quality team lead responsible for handling core cryptographic packages in Red Hat Enterprise Linux: OpenSSL, Mozilla NSS, GnuTLS, OpenSSH, libreswan, and others. With over 15 years of experience in the... Read More →
Wednesday October 14, 2026 16:10 - 16:50 CEST
Room 2
  Technical, Talk

16:50 CEST

The PQC Migration Copilot: Agentic AI for Crypto Discovery and Automated OpenSSL 3.5 Cutover
Wednesday October 14, 2026 16:50 - 17:30 CEST
An agentic-AI copilot for cryptographic discovery and automated cutover to OpenSSL 3.5's PQC providers.
Speakers
RK

Ranjan Kathuria

Staff Cloud Security Engineer, Rubrik Inc
My name is Ranjan Kathuria, and I am currently a Staff Cloud Security Engineer / Cloud Security Architect at Rubrik, a recognized leader in Data Backup and Data Security. Based in San Francisco, I lead Rubrik’s Cloud & Infrastructure Security Program, drawing on nearly a decade... Read More →
Wednesday October 14, 2026 16:50 - 17:30 CEST
Room 4
  Security, Talk

16:50 CEST

Beyond Algorithms: Exploiting Platform Cryptography with OpenSSL Providers
Wednesday October 14, 2026 16:50 - 17:30 CEST
Using OpenSSL Providers to exploit platform crypto hardware (mainframes, HSMs, embedded) where key material never surfaces in memory.
Speakers
FC

Finn Callies

Software Developer, IBM Deutschland Research&Development GmbH
Opensource Developer @ IBM, Confidential Computing and Secure Execution for Linux (SEL)
HD

Holger Dengler

Software Developer, IBM Deutschland Research&Development GmbH
Opensource Developer @ IBM, Nominated community member for OpenSSL platform linux64-s390x, Linux Kernel co-Maintainer for crypto-related stuff for s390 architecture
Wednesday October 14, 2026 16:50 - 17:30 CEST
Room 3
  Technical, Talk

16:50 CEST

Jipher FIPS cryptography provider - How we wrapped OpenSSL and the FIPS module using Java’s FFM API
Wednesday October 14, 2026 16:50 - 17:30 CEST
The open-source Jipher provider exposes OpenSSL-backed crypto through the JCA for FIPS-compliant Java, via a Java-to-native (FFM) architecture.
Speakers
JS

Jon Spillett

Principal Platform Software Engineer, Cryptography, Oracle Corporation
A principal developer and expert in applied cryptography, Jon Spillett has worked in this field for over 15 years. His introduction to cryptography at RSA Security brought experience with BSAFE cryptographic toolkits which he developed, maintained and customised.Over his time at Oracle... Read More →
Wednesday October 14, 2026 16:50 - 17:30 CEST
Room 2
  Technical, Talk

16:50 CEST

OpenSSL Corporation Business & Technical Advisory Committees Panel
Wednesday October 14, 2026 16:50 - 17:50 CEST
The Business and Technical Advisory Committees of the OpenSSL Corporation on stage: how community delegates shape business and technical decisions, what the committees achieved in their first term, and where advice turns into action. Moderated by Chris Ward.
Speakers
RB

Randall Becker

Nexbridge
The speaker's biography is being finalized and will be published here shortly.
DB

Dmitry Belyavskiy

Principal Software Engineer, Red Hat
Stockholm syndrome with OpenSSL
NG

Nikolas Gauder

Technical University of Munich
The speaker's biography is being finalized and will be published here shortly.
JJ

Jeff Johnson

Senior Leader, S/W Engineering, Security and Trust Organization, Cisco Systems, Inc
The speaker's biography is being finalized and will be published here shortly.
AK

Aditya Koranga

PQStation
Aditya Koranga has a strong backround in PQC and serves as Principal Security Architect at PQStation, where he helps banks and government agencies across Southeast Asia navigate their quantum-safe migration journey. He is the Technical Advisory Committee (TAC) Chair of the Post-Quantum... Read More →
KM

Kevin Micciche

HPE
The speaker's biography is being finalized and will be published here shortly.
avatar for Simo Sorce

Simo Sorce

Distinguished Engineer, Red Hat, LLC
Simo Sorce is a Distinguished Engineer at Red Hat based in New York,
where he has served as the RHEL Crypto Team Lead for many years. While he was a founder of the FreeIPA and SSSD projects and a long-time member of the Samba Team, his work now centers on the architectural security and cryptographic integrity of the platform. He maintains core cryptographic
... Read More →
CW

Chris Ward

Community Manager, OpenSSL Corporation
The speaker's biography is being finalized and will be published here shortly.
PY

Paul Yang

Director, Lenovo
OpenSSL Committer since 2018 and a member of the OpenSSL Corporation BAC. Currently serving as Director of Cloud Security at Lenovo, specializing in confidential computing and privacy-preserving technologies.
avatar for Jaroslav Řezník

Jaroslav Řezník

Program Manager, Red Hat Czech, s.r.o.
Jaroslav is the Principal Program Manager guiding standards and regulatory initiatives for Red Hat's Product Security Compliance team. His 18-year tenure is defined by his unique versatility: he is as dedicated to his beloved Fedora open-source community as he is to ensuring Red Hat... Read More →
Wednesday October 14, 2026 16:50 - 17:50 CEST
Room 1
  Community, Panel

17:30 CEST

Lessons Learned from Constructing Estonia’s PQC Migration Roadmap
Wednesday October 14, 2026 17:30 - 18:00 CEST
National-scale PQC migration: designing a roadmap practical under incomplete visibility, heterogeneous systems, supplier dependencies.
Speakers
JV

Jelizaveta Vakarjuk

Junior Researcher, Cybernetica AS
Jelizaveta is a junior researcher at Cybernetica and a PhD student at Tallinn University of Technology. She has been doing research in post-quantum cryptography, focusing more on cryptographic design of post-quantum threshold signature schemes. Additionally, she is a co-author of... Read More →
Wednesday October 14, 2026 17:30 - 18:00 CEST
Room 4
  Community, Talk

17:30 CEST

What shall we do with two PKCS#11 providers?
Wednesday October 14, 2026 17:30 - 18:00 CEST
openssl-projects' pkcs11-provider vs libp11's new provider: two implementations of the same thing, and the resulting user confusion.
Speakers
avatar for Jakub Jelen

Jakub Jelen

Principal Software Engineer, Red Hat
Everything Smart Cards, PKCS#11 and OpenSSL (mostly from outside).
Wednesday October 14, 2026 17:30 - 18:00 CEST
Room 2
  Community, Talk

17:30 CEST

New Insights into the Formal Verification of AWS-LC, a Fork of OpenSSL
Wednesday October 14, 2026 17:30 - 18:00 CEST
Formal verification of cryptographic implementations, particularly PQC in AWS-LC (a fork of OpenSSL): memory safety, type safety, functional correctness.
Speakers
NM

Nicky Mouha

Cryptography and Security Expert, KeyCryptic
Nicky Mouha is the Founder of KeyCryptic, a company that provides cryptography and security consulting services. He has a Ph.D. and two decades of experience in cryptanalysis, cryptographic design, and both hardware and software implementations. During his time at NIST (2016-2025), he collaborated on a wide range of nat... Read More →
Wednesday October 14, 2026 17:30 - 18:00 CEST
Room 3
  Technical, Talk
 
OpenSSL Conference 2026
From €250.00
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -