Is Maven Safe for Production? - Adam Kaplan, Red Hat & Manfred Moser, Chainguard

Join us at the premier vendor-neutral open source conference, where developers and technologists come together to collaborate, share knowledge, and explore the latest innovations and advancements in open source technology. Learn more at https://events.linuxfoundation.org/ Is Maven Safe for Production? - Adam Kaplan, Red Hat & Manfred Moser, Chainguard Apache Maven’s central role in the Java ecosystem is undeniable, however its flexible plugin framework creates significant hurdles for adopting modern secure software practices. Securing the Java software supply chain to meet CRA and other regulatory requirements can feel like a daunting, if not impossible task. This session will dive deep into the technical complexities of producing secured Maven builds through the practical experiences of two open source redistributors. You will learn strategies for producing SLSA artifacts for Maven builds, approaches for signing Java artifacts with Sigstore Cosign, and barriers to producing complete and accurate Software Bills of Materials (SBOMs) with Maven. We will also explore newer developments in the Maven ecosystem for cataloging dependencies and establishing trust in the Maven build process. This talk will conclude with a discussion of current gaps in Maven that could be addressed with the upcoming release of Maven 4.

Keynote: Welcome + Opening Remarks - Jim Zemlin, CEO, The Linux Foundation
▶︎

Keynote: Welcome + Opening Remarks - Jim Zemlin, CEO, The Linux Foundation

The Technical Talent Market in 2026: How Decision-makers Are... Anna Hermansen & Clyde Seepersad
▶︎

The Technical Talent Market in 2026: How Decision-makers Are... Anna Hermansen & Clyde Seepersad

I Hacked This Temu Router. What I Found Should Be Illegal.
▶︎

I Hacked This Temu Router. What I Found Should Be Illegal.

Bootiful Spring Boot 4 by Josh Long @ Spring I/O 2026
▶︎

Bootiful Spring Boot 4 by Josh Long @ Spring I/O 2026

Ep 7: Can AI Ever Create Mission Critical Software?  With Martin Davidson
▶︎

Ep 7: Can AI Ever Create Mission Critical Software? With Martin Davidson

Passkeys Explained: Are They Actually Better Than Passwords?
▶︎

Passkeys Explained: Are They Actually Better Than Passwords?

Strategic Approach To Demonstrating the Value of OSS Efforts - Dawn Foster, Independent
▶︎

Strategic Approach To Demonstrating the Value of OSS Efforts - Dawn Foster, Independent

The New Java Best Practices by  Stephen Colebourne
▶︎

The New Java Best Practices by Stephen Colebourne

Zephyr at 10 Years: Survey Feedback - Kate Stewart & Hilary Carter, The Linux Foundation
▶︎

Zephyr at 10 Years: Survey Feedback - Kate Stewart & Hilary Carter, The Linux Foundation

Scaling Your OSPO With Agents and Automation: Lessons From GitHub's Open Source Progr... Ashley Wolf
▶︎

Scaling Your OSPO With Agents and Automation: Lessons From GitHub's Open Source Progr... Ashley Wolf

eBPF: Unlocking the Kernel [OFFICIAL DOCUMENTARY]
▶︎

eBPF: Unlocking the Kernel [OFFICIAL DOCUMENTARY]

Automating MCP Server Testing: Engineering Reliability for Agentic Systems - Neethu Elizabeth Simon
▶︎

Automating MCP Server Testing: Engineering Reliability for Agentic Systems - Neethu Elizabeth Simon

System Design Course – APIs, Databases, Caching, CDNs, Load Balancing & Production Infra
▶︎

System Design Course – APIs, Databases, Caching, CDNs, Load Balancing & Production Infra

Stanford CS153 Frontier Systems | Jensen Huang from NVIDIA on the Compute Behind Intelligence
▶︎

Stanford CS153 Frontier Systems | Jensen Huang from NVIDIA on the Compute Behind Intelligence

🚗 BYD : The biggest SCAM of the car industry ?
▶︎

🚗 BYD : The biggest SCAM of the car industry ?

The Agent Development Lifecycle: Build, Test, Deploy, Monitor | Interrupt 26
▶︎

The Agent Development Lifecycle: Build, Test, Deploy, Monitor | Interrupt 26

Taming MCP Server Sprawl: Securing and Scaling the Model Context Pro... Jeffrey Borek & Olivia Buzek
▶︎

Taming MCP Server Sprawl: Securing and Scaling the Model Context Pro... Jeffrey Borek & Olivia Buzek

Lazy Rivers and Open Source Security: Learn About the OpenSSF With... Angelah Liu & Stacey Potter
▶︎

Lazy Rivers and Open Source Security: Learn About the OpenSSF With... Angelah Liu & Stacey Potter

Exclusive Interview With Nvidia CEO Jensen Huang (Full Special)
▶︎

Exclusive Interview With Nvidia CEO Jensen Huang (Full Special)

From FreeRTOS To Zephyr: A Practical Migration Guide for Embedded Developers - Jacob Beningo
▶︎

From FreeRTOS To Zephyr: A Practical Migration Guide for Embedded Developers - Jacob Beningo