Loading…
In-person
31 March 2025
Learn More and Register to Attend

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for KubeCon + CloudNativeCon Europe 2025 and meet the Eligibility Requirements to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in British Summer Time (BST | GMT+1)To see the schedule in your preferred timezone, please select from the drop-down located at the bottom of the menu to the right.

The schedule is subject to change and session seating is available on a first-come, first-served basis.

Use the link below to find additional schedule information:
KubeCon + CloudNativeCon 
CNCF-hosted Co-located Schedule

Monday March 31, 2025 16:00 - 16:35 BST
A series of high-profile supply chain attacks targeted popular GitHub Actions such as TJ-Actions and ReviewDog, injecting malicious code to try and exfiltrate secrets via workflow logs. These compromises shed light on critical CI/CD vulnerabilities impact and emphasized the need for robust mitigation strategies.

We’ll dive into the details of these incidents, walking through how they unfolded, the measures taken by GitHub Field Services in response, and how you can proactively secure your Action.
Monday March 31, 2025 16:00 - 16:35 BST
Level 3 | ICC Capital Suite 10-12
Log in to leave feedback.

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link