Loading…
The OpenSSL Conference is the global meeting place for the people who build, deploy, govern, and rely on secure digital infrastructure. It brings together developers, security engineers, researchers, policymakers, enterprises, legal and compliance professionals, and community contributors, all united by a shared commitment to stronger open-source security.
Type: Technical clear filter
arrow_back View All Dates
Wednesday, October 14
 

09:30 CEST

A library-agnostic hybrid classic/PQ OpenSSL provider — built with AI
Wednesday October 14, 2026 09:30 - 10:00 CEST
In last year's presentation on oqs-provider, we concluded with proposed next work, namely an OpenSSL provider for hybrid classic/PQ logic independent of a specific PQ library. This talk presents how this new provider was created with the help of an AI, its functional capabilities and the lessons learned: the former dwarf the ones of the original oqs-provider, and the latter may be helpful for others using the same tooling in the context of a somewhat security-related software component.
Speakers
MB

Michael Baentsch

Independent
Michael Baentsch is the original author and long-time maintainer of oqs-provider, the OpenSSL provider that brought experimental post-quantum cryptography to OpenSSL via liboqs. He presented oqs-provider at the OpenSSL Conference 2025 in Prague; this talk covers the follow-up he proposed... Read More →
Wednesday October 14, 2026 09:30 - 10:00 CEST
Room 2
  Technical, Talk

10:30 CEST

Finding Timing Side Channels When Internal Clocks Are Hidden
Wednesday October 14, 2026 10:30 - 11:00 CEST
Evaluating Java Card smart cards for timing side channels when the platform hides internal timing, using noisy host-side measurements.
Speakers
VH

Veronika Hanulíková

PhD candidate, Masaryk University
I am a PhD candidate and security researcher at Masaryk University and a member of the Center for Research on Cryptography and Security (CRoCS), specializing in cryptography, security analysis, and secure system design. My research focuses on the security of cryptographic implementations... Read More →
Wednesday October 14, 2026 10:30 - 11:00 CEST
Room 4
  Technical, Talk

10:30 CEST

How small can you (reasonably) get an ML-DSA and ML-KEM implementation?
Wednesday October 14, 2026 10:30 - 11:00 CEST
Speed-vs-memory tradeoffs in ML-DSA and ML-KEM: key representations and deferring expansion until values are needed.
Speakers
MO

Mike Ounsworth

Lead open source maintainer, Cryptic Forest Software
Mike Ounsworth is a software security architect and cryptographic protocol designer. He is deeply involved in the Post-Quantum transition, particularly in re-designing IETF networking protocols to accommodate the new PQC algorithms, dual-algorithm hybrids, and mechanisms to ease migration... Read More →
Wednesday October 14, 2026 10:30 - 11:00 CEST
Room 3
  Technical, Talk

11:00 CEST

Where Post-Quantum Migration Hurts a Wi-Fi IoT Endpoint
Wednesday October 14, 2026 11:00 - 11:30 CEST
Where PQC migration hurts a constrained Wi-Fi IoT endpoint: tight CPU/RAM/flash/link budgets against much larger PQ keys and signatures.
Speakers
MP

Martin Perešíni

Postdoctoral Research Assistant, Faculty of Information Technology, Brno University of Technology
Ing. Martin Perešíni, Ph.D., is a Postdoctoral Research Assistant in the Communication Systems Group (CSG) at the Department of Informatics (IFI), University of Zurich. He recently defended his Ph.D. at the Faculty of Information Technology, Brno University of Technology, where he works with the BlockSec@FIT... Read More →
Wednesday October 14, 2026 11:00 - 11:30 CEST
Room 4
  Technical, Talk

11:30 CEST

HSM-Backed OpenPGP Signing for OpenSSL Releases: Architecture and Operations
Wednesday October 14, 2026 11:30 - 12:00 CEST
For most of OpenSSL's history a release was signed with the release manager's own OpenPGP key — the 1.1.1 and 3.0.0 tags carry signatures from different individuals. Automating the release process consolidated that onto one shared release key, but it was still a private key in a file on disk. Either way, the trust root for software that a large chunk of the internet depends on to build TLS was a file that could be copied. This talk covers moving that trust root onto hardware — an Entrust nShield HSM in FIPS 140-3 mode — without breaking release automation and without changing anything for verifiers. We cover: the two-tier key model (a Certify-only primary key under a card quorum, plus a signing subkey the pipeline uses unattended); sq-pkcs11, the open-source Rust CLI on Sequoia-OpenPGP we built to bridge OpenPGP and PKCS#11; the redesigned pipeline with an isolated signing stage; nshield-card-check, a small web app for custodians to verify their card and passphrase on demand with an audit trail; and generalizing the same HSM to sign RPM/DEB repos and Java code. Attendees leave with a concrete reference architecture that runs against SoftHSM2 as well as real hardware.
Speakers
DM

Dmitry Misharov

DevOps Engineer, OpenSSL Corporation
Dmitry Misharov is a Senior DevOps Engineer at OpenSSL Corporation, working on the infrastructure behind OpenSSL: release automation, the HSM-backed signing pipeline, and performance testing infrastructure. Dmitry designed and built the release-signing migration this talk covers... Read More →
Wednesday October 14, 2026 11:30 - 12:00 CEST
Room 2
  Technical, Talk

14:00 CEST

Daniel J. Bernstein — Session Title Coming Soon
Wednesday October 14, 2026 14:00 - 14:40 CEST
Session details are being finalized with the speaker and will be published here as soon as they are available. This session will be presented remotely.
Speakers
avatar for Daniel Bernstein

Daniel Bernstein

Research Professor, Department of Computer Science, University of Illinois Chicago
Prof. Daniel J. Bernstein designs cryptography to proactively reduce risks. His designs with large-scale deployment include X25519, Ed25519, ChaCha20, SipHash (co-designed with Jean-Philippe Aumasson), Streamlined NTRU Prime (with various co-designers), and Classic McEliece (with... Read More →
Wednesday October 14, 2026 14:00 - 14:40 CEST
Room 1
  Technical, Talk

14:00 CEST

Optimizing ML-KEM and ML-DSA with Vector Instructions and Mathematical Techniques
Wednesday October 14, 2026 14:00 - 14:50 CEST
Implementation techniques improving ML-KEM/ML-DSA efficiency on 128-bit vector architectures (IBM Z, POWER), combining vectorized arithmetic with maths.
Speakers
TK

Timo Keller

Cryptography Developer for Linux on Z, IBM Deutschland Research & Development
Timo Keller is a Cryptography Developer for Linux on IBM Z at IBM Deutschland Research & Development, Germany. He holds a PhD and a habilitation in number theory, arithmetic geometry, and computer algebra, and has served as a substitute associate professor in these fields. His current... Read More →
Wednesday October 14, 2026 14:00 - 14:50 CEST
Room 4
  Technical, Talk

15:30 CEST

Building a Fail-Closed Cryptographic Code LLM Support Assistant
Wednesday October 14, 2026 15:30 - 16:10 CEST
Lessons from a fail-closed RAG support assistant for Bouncy Castle, where LLM probabilism clashes with deterministic crypto.
Speakers
avatar for Francis Mendoza

Francis Mendoza

Cryptographic Software Engineer, Keyfactor, Inc.
Francis Mendoza is a Filipino-American computer scientist working at the intersection of applied cryptography and resilient distributed systems. He holds a B.S. and M.S. in Computer Science from Arizona State University, where his research focused on cybersecurity for critical infrastructure... Read More →
Wednesday October 14, 2026 15:30 - 16:10 CEST
Room 2
  Technical, Talk

15:30 CEST

DTLSv1.3 in OpenSSL
Wednesday October 14, 2026 15:30 - 16:10 CEST
DTLS 1.3 brings a variable-length unified header, encrypted sequence numbers, and an explicit ACK mechanism. This talk covers its implementation in OpenSSL.
Speakers
RH

Ryan Hooper

Technical Leader/Associate OpenSSL Foundation Engineer, Cisco Systems/OpenSSL Foundation
Associate OpenSSL Foundation Engineer on part-time secondment from his role as Software Developer at Cisco Systems. With years of hands-on experience on many different platforms across both TLS and IPsec stacks, Ryan brings deep expertise in secure communications. At OpenSSL Foundation... Read More →
Wednesday October 14, 2026 15:30 - 16:10 CEST
Room 3
  Technical, Talk

15:30 CEST

PLANTS and Merkle Tree Certificates
Wednesday October 14, 2026 15:30 - 16:10 CEST
Merkle Tree Certificates provide a post-quantum proof of name-to-key that avoids enormous PQ signatures on the wire.
Speakers
BB

Bob Beck

Software Engineer, OpenSSL Corporation
Bob was born in the USA, with his parents escaping to Canada in a balloon during the Nixon Regime. He gained much unix experience at an early age and a fasicnation with fiddling with network stacks led tohis finding of a used SparcStation in the early 90's, When NetBSD did not run... Read More →
AD

Andrew Dinh

Software Engineer, OpenSSL Corporation
Andrew is a smart guy who is Bob's co-conspirator for these talks. this bio needs to be fixed by Andrew.
Wednesday October 14, 2026 15:30 - 16:10 CEST
Room 1
  Technical, Talk

16:10 CEST

Testing PQC Timing Side-Channels
Wednesday October 14, 2026 16:10 - 16:50 CEST
Custom test harnesses and tlsfuzzer to measure timing variations in OpenSSL's ML-KEM and ML-DSA implementations for constant-time compliance.
Speakers
AK

Alicja Kario

Principal Quality Engineer, Red Hat
Alicja is a quality engineer specialised in cryptography at Red Hat. She is the quality team lead responsible for handling core cryptographic packages in Red Hat Enterprise Linux: OpenSSL, Mozilla NSS, GnuTLS, OpenSSH, libreswan, and others. With over 15 years of experience in the... Read More →
Wednesday October 14, 2026 16:10 - 16:50 CEST
Room 2
  Technical, Talk

16:50 CEST

Beyond Algorithms: Exploiting Platform Cryptography with OpenSSL Providers
Wednesday October 14, 2026 16:50 - 17:30 CEST
Using OpenSSL Providers to exploit platform crypto hardware (mainframes, HSMs, embedded) where key material never surfaces in memory.
Speakers
FC

Finn Callies

Software Developer, IBM Deutschland Research&Development GmbH
Opensource Developer @ IBM, Confidential Computing and Secure Execution for Linux (SEL)
HD

Holger Dengler

Software Developer, IBM Deutschland Research&Development GmbH
Opensource Developer @ IBM, Nominated community member for OpenSSL platform linux64-s390x, Linux Kernel co-Maintainer for crypto-related stuff for s390 architecture
Wednesday October 14, 2026 16:50 - 17:30 CEST
Room 3
  Technical, Talk

16:50 CEST

Jipher FIPS cryptography provider - How we wrapped OpenSSL and the FIPS module using Java’s FFM API
Wednesday October 14, 2026 16:50 - 17:30 CEST
The open-source Jipher provider exposes OpenSSL-backed crypto through the JCA for FIPS-compliant Java, via a Java-to-native (FFM) architecture.
Speakers
JS

Jon Spillett

Principal Platform Software Engineer, Cryptography, Oracle Corporation
A principal developer and expert in applied cryptography, Jon Spillett has worked in this field for over 15 years. His introduction to cryptography at RSA Security brought experience with BSAFE cryptographic toolkits which he developed, maintained and customised.Over his time at Oracle... Read More →
Wednesday October 14, 2026 16:50 - 17:30 CEST
Room 2
  Technical, Talk

17:30 CEST

New Insights into the Formal Verification of AWS-LC, a Fork of OpenSSL
Wednesday October 14, 2026 17:30 - 18:00 CEST
Formal verification of cryptographic implementations, particularly PQC in AWS-LC (a fork of OpenSSL): memory safety, type safety, functional correctness.
Speakers
NM

Nicky Mouha

Cryptography and Security Expert, KeyCryptic
Nicky Mouha is the Founder of KeyCryptic, a company that provides cryptography and security consulting services. He has a Ph.D. and two decades of experience in cryptanalysis, cryptographic design, and both hardware and software implementations. During his time at NIST (2016-2025), he collaborated on a wide range of nat... Read More →
Wednesday October 14, 2026 17:30 - 18:00 CEST
Room 3
  Technical, Talk
 
OpenSSL Conference 2026
From €250.00
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -