BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//Palaner//palaner Single Event//EN
METHOD:PUBLISH
CALSCALE:GREGORIAN
BEGIN:VEVENT
UID:meetup-85e9316299@palaner.app
DTSTAMP:20260722T112706Z
DTSTART:20260722T170000Z
DTEND:20260722T183000Z
SUMMARY:DSOLG July Event
LOCATION:Civo Tech Junction
DESCRIPTION:Saved in Palaner as: saved\n\nPalaner match: 39% · why: lots of
  people going · starting soon\n\nDetails\n\nWelcome to the DevSecOps Londo
 n Gathering July Event on Wednesday 22 July! We bring you speakers\, as we
 ll as the usual conversations\, pizza and beer!\n\n📍 Hosted at Civo Tech J
 unction\, 1st Floor\, 32-37 Cowper Street\, London\, EC2A 4AW\n📅 Wednesday
 \, 22 July\n🕕 6:00–8:00 PM\n\nTalk Abstracts:\n\nLightning Talk - Using AI
  prompts for disaster recovery - by John Davies\nAfter Zafrul Sattar's tal
 k at the end of 2025\, he gave out to those who asked the prompt he had de
 monstrated. This lightning talk will demonstrate a development of Zafrul's
  prompt that drafts disaster recovery plans. The talk will describe what c
 hanged and why\, what worked\nand didn't and what might be done next.\nJoh
 n's Bio:\nJohn is an accountant with ingrowing computers. He started punch
 ing cards for fun in 1974 and has more accounting qualifications than anyo
 ne\ncould possibly need. An unrepentant bookworm\, he still has Pascal and
 \nCOBOL manuals from the 1970s which he has been known to quote in answer 
 to Perl problems in 2017. He yearns for the "good old days" when\ndocument
 ation came in glossy manuals and didn't make him rant. His pipe\ndream is 
 for software that doesn't make him rant. Or even for accounting\nlaws and 
 standards that don't.\nMain Talk - How hackers are targeting deployment pa
 th developers by David Read and Valentino Duval\nDevSecOps has spent years
  hardening CI/CD\, but recent campaigns show that the developer is now par
 t of the deployment path attackers are targeting. In this talk\, we will w
 alk through what Ossprey found while tracking real supply chain activity\,
  including DPRK interview lures\, second stage malware\, credential theft\
 , poisoned developer tools\, malicious packages and AI assisted code compr
 omise. Rather than treating these as isolated incidents\, we will show the
  patterns that linked them together: reused infrastructure\, obfuscation c
 hoices\, token flows\, package behaviour and attacker tradecraft across np
 m\, PyPI\, and GitHub. The focus is technical and investigative: what we s
 aw\, how we connected it\, what surprised us\, and what defenders can real
 istically monitor.\nDavid's Bio:\nDavid has over 16 years of experience wo
 rking in cyber security working as a researcher\, architect and security e
 ngineering manager. Recently David cofounded Ossprey a cyber security comp
 any that specialises in detecting and stopping open source malware attacks
 .\nValentino's Bio:\nValentino is an engineer and security researcher at O
 ssprey\, working on the front lines of open source malware detection. He s
 pecialises in uncovering\, analysing and disrupting malicious campaigns ta
 rgeting developers\, packages and the wider software supply chain.
URL:https://www.meetup.com/devsecops-london-gathering/events/315328305/
CATEGORIES:palaner,saved
STATUS:TENTATIVE
END:VEVENT
END:VCALENDAR
