Loading…
8 August | Hyderabad, India
Learn More and Register To Attend

The Sched app allows you to build your schedule, but it is not a substitute for event registration. To participate in the sessions, you must be registered for OpenSSF Community Day India 2025. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

Please note: This schedule is automatically displayed in India Standard Time. To see the schedule in your preferred timezone, please select from the drop-down located at the bottom of the menu to the right.

Schedule is subject to change.
Monday August 4, 2025 12:50 - 13:05 IST
Open source ecosystems frequently face supply chain attacks via malicious packages hidden in trusted registries. vet is an open-source security tool designed specifically to detect potentially malicious packages through behavioral and heuristic analysis.

This session covers:

Supply chain attacks: Brief overview and recent cases of malware found in popular ecosystems such as npm and PyPI.

Vet introduction: How vet identifies suspicious packages beyond traditional CVE-based scanning (Malware Analysis Docs).https://docs.safedep.io/cloud/malware-analysis

Technical walkthrough: Practical use of vet in CI/CD pipelines and developer workflows (CLI and GitHub Actions examples).

Actionable outcomes: Understanding and responding to vet results effectively.
Speakers
avatar for TEJA KUMMARIKUNTLA

TEJA KUMMARIKUNTLA

Developer Relations Engineer, Harness
Teja is a Developer advocate, Podcaster and an open-source contributor, his interest lies in understanding and improving the developer experience and evangelizing through the developer community.
Monday August 4, 2025 12:50 - 13:05 IST
Meeting Room 1 + 2

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link