Loading…
11-12, August 2026
Seoul, South Korea
View More Details & Registration
Note: The schedule is subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Korea 2026 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Korea Standard Time (KST), UTC +9. To see the schedule in your preferred timezone, please select from the drop-down menu to the right.
Type: Safety Critical Software clear filter
Tuesday, August 11
 

11:00 KST

Sponsored Session: A New Security Standard for the AI Era: Zero-CVE and Real-Time Threat Response - SeungEll Lee, Red Hat
Tuesday August 11, 2026 11:00 - 11:30 KST
As Generative AI and Agentic AI continue to evolve, cyberattacks have become increasingly automated. With hundreds of new CVEs disclosed every day and AI-powered attacks are automated in zero-hour, traditional security and patch management approaches have reached their limits.

This session explores how organizations can build a lightweight hardened infrastructure and a trusted Zero-CVE environment with Red Hat AI on a proven platform that leverages the strengths of the open source ecosystem. It also examines the need for autonomous defense systems and approaches to implementing them, enabling real-time threat response while maintaining infrastructure stability through controlled AI-driven automation.
Speakers
avatar for SeungEll Lee

SeungEll Lee

Enterprise Solution Architect, Red Hat
SeungEll Lee is an Enterprise Solution Architect at Red Hat Korea, who helps customers achieve business success through tailored architecture strategies for the hybrid cloud and AI era. By providing consulting services and phased transformation roadmaps, he enables customers to navigate... Read More →
Tuesday August 11, 2026 11:00 - 11:30 KST
Rose
 
Wednesday, August 12
 

14:55 KST

Breaking the Sharing Paradox: A Working Foundation and a Call for the Next Phase - Jinyong (Dave) Jeon, SOOHO.IO
Wednesday August 12, 2026 14:55 - 15:25 KST
Institutional blockchain systems need collective defense, yet the data behind the vulnerabilities they discover cannot leave the institution. The OpenReagent project was launched to break that paradox through an open standard built on sharing signatures, not source. A year in, the concept has become a working technical foundation, with early benchmark evidence and first conversations with institutions testing real fit. This session shares what that foundation now enables, and what it doesn't yet, and issues a direct call to researchers ready to deepen the technical frontier, and to institutions ready to join the initiative as early partners.
Speakers
avatar for Jinyong (Dave) Jeon

Jinyong (Dave) Jeon

Head of Security Business, SOOHO.IO
Jinyong Jeon is a head of security business at SOOHO.IO
Wednesday August 12, 2026 14:55 - 15:25 KST
Magnolia

15:55 KST

Case Studies of Existing Use of Linux in Safety-critical Domains - Nikita Verma, Individual & Harshita Varma, Independent
Wednesday August 12, 2026 15:55 - 16:25 KST
The automotive transition to Software-Defined Vehicles (SDVs) relies on mixed-criticality architectures, consolidating open-source infotainment (Automotive Grade Linux) alongside safety-critical Real-Time Operating Systems (RTOS). This virtualization boundary—often KVM/Xen—is assumed to be a secure airgap. However, guest-to-host communication requires hardware abstraction, primarily via the VirtIO standard.

This 40-minute session conducts a hardcore technical teardown of the virtqueue shared-memory mechanism, exposing how legacy C-based VirtIO backends (vhost-net) introduce critical vulnerabilities into the automotive supply chain.

We will dissect a hypervisor escape utilizing custom fuzzing. By crafting malformed descriptor chains to bypass frontend validation, a compromised guest can force the host's backend into out-of-bounds memory corruption, effectively bridging the airgap into the control plane.

Finally, we will architect the open-source defense: migrating to memory-safe rust-vmm virtualization components to mathematically eliminate buffer overflows, and deploying zero-overhead eBPF probes for kernel-level I/O anomaly detection.
Speakers
avatar for Nikita Verma

Nikita Verma

cloud Native Developer, Individual
Nikita Verma is an active contributor to the open-source community with a strong focus on Kubernetes and cloud-native technologies. She worked on developing forest growth simulations, automating configuration generation, and integrating CI/CD workflows. Nikita has volunteered at KubeCon... Read More →
avatar for Harshita Varma

Harshita Varma

Associate Product Manager, Independent
Harshita Varma is a contributor to the Kubernetes project, actively involved in the SIG Contributor Experience community, with a focus on enhancing the contributor journey. In March 2022, she was selected as an LFX mentee for Kubernetes under the CNCF. Since then, Harshita has significantly... Read More →
Wednesday August 12, 2026 15:55 - 16:25 KST
Magnolia

16:35 KST

Using AI To Bridge the Gap Between Safety Standards and Open Source Development - Kate Stewart, The Linux Foundation
Wednesday August 12, 2026 16:35 - 17:05 KST
Popular open source operating systems like the Linux Kernel and Zephyr RTOS accept up to 9 commits per hour. Safety standards, like 61508, 26262, and others were developed without this rate of change in mind. Safety standards also expect the requirements to be explicit, which is not part of OS development processes. By using AI tools, we're able to accelerate the analysis of OS code to derive the requirements and traceability to tests. By storing this info in tools that can import and export System Package Data eXchange (SPDX) 3.0+, we're able to capture the requirements in a way that can be leveraged for wider system analysis necessary for safety. Associating integrity methods with the requirements and code snippets, also enables monitoring. Combining requirements traceability with precise build SBOM metadata, gives us a framework to keep a component compliant to a safety profile after a security fix.

This talk will provide a view on the latest experiments occurring with the Linux Kernel in the ELISA project, as well as in the Zephyr Safety Working group, and SPDX Functional Safety working group to extend SPDX to meet the needs of establishing these frameworks.
Speakers
avatar for Kate Stewart

Kate Stewart

Vice President of Dependable Embedded Systems, The Linux Foundation
Kate Stewart works with the safety, security and license compliance communities to advance the adoption of best practices into embedded open source projects. Since joining The Linux Foundation, she has launched the ELISA and Zephyr Projects, and supports other embedded projects. With... Read More →
Wednesday August 12, 2026 16:35 - 17:05 KST
Magnolia
 
  • Filter By Date
  • Filter By Venue
  • Filter By Type
  • Slides Attached
  • Timezone

Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.