Loading…
7-9 October, 2026
Prague, Czechia
View More Details & Registration
Important Note: Timing of sessions and room locations are subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Europe 2026 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.



Company: Beginner clear filter
arrow_back View All Dates
Friday, October 9
 

09:05 CEST

Clocks in Zephyr: A Practical Guide for BSP Developers (Lesson Learned From a Real Porting) - Martin Hoff, Silicon Laboratories
Friday October 9, 2026 09:05 - 09:45 CEST
Clocks are easy to ignore until your first Zephyr BSP port — when UART, SPI, or DMA suddenly depend on device tree properties you have never touched.
This beginner-friendly talk explains how clocks work in Zephyr today: clocks as phandle-arrays (like pwms and gpios), the meaning of #clock-cells, and how DT macros connect DTS to driver code. We separate three everyday questions: enabling a clock, selecting its source, and reading its rate — mapped to clock_control_on(), clock_control_configure(), and get_rate().
We then cover practical porting decisions any SoC author faces: what to describe in device tree at boot, what to leave to runtime (for example power management), and common mistakes — wrong cells, gates versus muxes and over-modelling hardware in DT.
Finally, we look at where Zephyr is heading: RFCs for a Clock Management Subsystem propose richer clock trees and predefined clock states, closer to how silicon is wired. You will leave with a reusable mental model for today’s APIs and a map of tomorrow’s direction.
Audience: developers new to Zephyr, BSP porters, and device tree authors. No prior clock-driver experience required.
Speakers
avatar for Martin Hoff

Martin Hoff

Software System Engineer, Silicon Laboratories
Four years of Zephyr experience, including two at Silicon Laboratories co-maintaining upstream support for SiWx91x and EFR32 SoCs. My work spans BSP porting, device tree, and driver development across Silicon Labs platforms.
Friday October 9, 2026 09:05 - 09:45 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

09:05 CEST

From Zero Hardware To Production: High-Performance Sensors With Zephyr - Jan Germer, Fluke Deutschland GmbH
Friday October 9, 2026 09:05 - 09:45 CEST
This talk shares practical lessons learned from building multi-platform sensor firmware on Zephyr RTOS for industrial alignment tools. Zephyr enabled our team to deliver a high-quality solution despite an extremely tight project schedule. Early prototyping along with Zephyr’s native simulator (native_sim) enables firmware development and testing long before first PCBs are available. A modular architecture based on message queues and the Kconfig system allows for independent, testable components.
Finally, we dive into the hardware-facing challenges we encountered and solved: deterministic event handling under tight timing constraints and zero-CPU data acquisition using DMA-driven ADC pipelines.
Attendees will gain insights into structuring scalable Zephyr firmware, accelerating development without hardware, and building high-performance embedded systems with confidence.
Speakers
avatar for Jan Germer

Jan Germer

Senior Development Engineer, Fluke Deutschland GmbH
Jan Germer is a Senior Development Engineer at Fluke Deutschland GmbH, working on solutions for industrial sensing applications. After completing his PhD in Physics, he moved into industry, where he has worked across R&D, software, and firmware development. His focus areas include... Read More →
Friday October 9, 2026 09:05 - 09:45 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

09:50 CEST

Yocto BSP Layers: Breaking Free From Complexity - Mathieu Dubois-Briand & Köry Maincent, Bootlin
Friday October 9, 2026 09:50 - 10:20 CEST
Many Yocto layers provided by silicon vendors prioritize vendor-specific tooling, demos, and opinionated decisions often at the expense of simplicity, flexibility and maintainability. This makes
them challenging to integrate for custom boards or to adapt to specific customer needs.

Additionally, some of those vendor-provided layers create a maintenance burden: when you need to update, you become dependent on the vendor's choices and changes, which are often hard to understand and follow.

In this talk, we'll examine common issues found in vendor-provided Yocto layers and show how they introduce unnecessary complexity into embedded Linux projects. Much of what new users perceive as “Yocto complexity” actually comes from the design and maintenance practices used in vendor layers.

We'll then introduce yocto-kiss as an example of a simpler and more maintainable approach to vendor support layers. The talk will cover practical best practices for layer design, common pitfalls to avoid, and strategies for building vendor layers that are clean, flexible, and pleasant to maintain.
Speakers
avatar for Mathieu Dubois-Briand

Mathieu Dubois-Briand

Embedded Linux engineer, Bootlin
Mathieu Dubois-Briand is an Embedded Linux engineer at Bootlin since 2024, specializing in Yocto integration, kernel development, device drivers and bootloaders.
He is part of the Yocto Build Failure "SWAT" team, in charge of testing patches submitted to OpenEmbedded core layer and Bitbake master branches... Read More →
avatar for Köry Maincent

Köry Maincent

Embedded Linux engineer, Bootlin
Köry Maincent is an Embedded Linux engineer at [Bootlin](https://bootlin.com/) since 2020, working on kernel, device drivers, bootloaders and build system integration, and on upstreaming on all the above.
He is the maintainer of the [ST Buildroot External](https://github.com/boo... Read More →
Friday October 9, 2026 09:50 - 10:20 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

09:50 CEST

Playing Audio on a SoC DAC Output With Zephyr - Eve Redero, Redero Tech
Friday October 9, 2026 09:50 - 10:20 CEST
Some SoCs have an embedded DAC peripheral, which allow to play low or medium resolution audio with minimal electronics, no advanced I2S external codec required.

In this talk, I present a list of ingredients required to make an acceptable audio output:
- The DAC: what it is, how it is different from PWM audio output or I2S peripherals
- DMA, your DAC’s best friend, to run continuously and without drops
- Debug something fast and real-time thanks to tracing

Then I will discuss implementation, with the codec subsystem. Example platform will be ST STM32F7 and Atmel ATSAM3X8E.

Finally, if nothing crashes or burn in the meantime, I will give a demonstration.
Speakers
avatar for Eve Redero

Eve Redero

Senior Electronics Engineer, Redero Tech
I have worked as an electronics and embedded systems engineer for about 10 years, mostly in consumer electronics companies. My skills set includes board design, low-level firmware development, and a bit of knowledge about board production and testing. I usually work for tech companies... Read More →
Friday October 9, 2026 09:50 - 10:20 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

11:05 CEST

Small Language Models 101: Why Bigger Isn't Always Better - Mohit Gaur, Microsoft
Friday October 9, 2026 11:05 - 11:45 CEST
Large Language Models often dominate headlines, but many real world AI applications don't need billions of parameters to be effective. Tasks such as classification, information extraction, intent detection, summarization and domain specific assistants can often be served effectively by smaller open source models with lower latency, reduced infrastructure requirements and improved privacy.

This session introduces Small Language Models (SLMs), explores the trade-offs between model size, accuracy, cost and performance and discusses techniques such as quantization, distillation and domain adaptation that make these models practical for deployment on laptops and edge devices.

Attendees will leave with a framework for selecting the right model for a given use case, understanding why bigger is not always better and how open-source SLMs are making AI more accessible to developers and organizations with limited compute resources.
Speakers
avatar for Mohit Gaur

Mohit Gaur

Software Engineer 2, Microsoft
Mohit Gaur is a software engineer at Microsoft with a passion for exploring new tools and sharing insights that help others harness the full potential of technology. He thrives on collaboration and mutual success and is guided by the belief that every challenge holds the potential... Read More →
Friday October 9, 2026 11:05 - 11:45 CEST
Terrace 2A (Floor 2)
  Open Source 101

11:05 CEST

From Using To Leading: How a Grid Operator Leverages Open Source Strategically - Jonas van den Bogaard, Alliander
Friday October 9, 2026 11:05 - 11:45 CEST
As the energy system transitions into a highly digital, data-driven ecosystem, grid operators face mounting complexity, rising costs, and increasing pressure to deliver scalable and future-proof solutions. In this context, open source is no longer a technical preference. It is becoming a strategic necessity.

In this session, Alliander shares how it has repositioned open source as a key enabler of its digital strategy. We show how a clear vision helps maximize public value, accelerate innovation, strengthen digital sovereignty, and improve transparency, while maintaining control over long-term costs.

We introduce three guiding principles: Open Source First, Building Together, and Confidence in Openness. We also highlight practical implications, from embedding open source in procurement to actively contributing and opening internal solutions.

This session offers a concrete example for executives on how to move from ad hoc use of open source to a coherent, organization-wide strategy. Reducing duplication, optimizing investments, and strengthening collaboration across the energy ecosystem, including within LF Energy.
Speakers
avatar for Jonas van den Bogaard

Jonas van den Bogaard

Open Source Office Lead, Alliander N.V.
Jonas van den Bogaard is a Digital Strategy Lead at Alliander, a distribution system operator (DSO) in the Netherlands. Alliander provides reliable, affordable, and accessible energy transport and distribution to a large part of the Netherlands. Open source has proved to be an enabler... Read More →
Friday October 9, 2026 11:05 - 11:45 CEST
South Hall 1 A (Floor 1)

11:05 CEST

Demystifying Pinctrl: Pin Multiplexing in Zephyr - Roy Jamil, Ac6
Friday October 9, 2026 11:05 - 11:45 CEST
Pin multiplexing is always needed in embedded development. But when we start changing pins in a devicetree overlay, or when creating a custom board, things can quickly become confusing: build errors, wrong pin states, peripherals not starting, or hardware that simply does not behave as expected.

In Zephyr, the pinctrl subsystem is what connects the physical pins of the SoC with the peripherals we want to use. It defines the pin function, the electrical configuration, and the pin states used by the drivers.

In this talk, we will demystify pin multiplexing in Zephyr and explain how to use pinctrl in devicetree in simple words. We will go step by step through pin groups, pin states, common configurations, overlays, board files, and SoC-specific syntax.

We will also use practical examples for common peripherals and vendor families, and show how to debug the most frequent issues when customizing pins.
Speakers
avatar for Roy Jamil

Roy Jamil

Training Engineer, Ac6
Roy Jamil, with a PhD in the field of Asymmetric Multiprocessing (AMP) and real-time embedded systems, has over six years of experience as a Training Engineer at Ac6. He trains hundreds of engineers annually. His experience includes programming, Linux, drivers, Yocto, and various... Read More →
Friday October 9, 2026 11:05 - 11:45 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

11:05 CEST

Zenbedded: Bringing Ros2_control Closer To the Embedded World - Speakers to be Announced
Friday October 9, 2026 11:05 - 11:45 CEST
The Robot Operating System (ROS) is the de facto standard open-source middleware for building robot software, providing standardized messaging, tooling, and reusable components. ros2_control is a hardware-agnostic control framework focusing on the modular composition of control systems for robots, sharing of controllers as well as real-time performance.

Bringing ros2_control to embedded systems usually means bolting heavy DDS serialization and a bridge process onto microcontrollers. Zenbedded fixes this. It is a monolithic Zephyr, Zenoh, and ROS 2 framework built specifically for ros2_control. We put the transport, the RTOS client library, and the host-side hardware_interface plugin into one tight repository.
On the wire, we use a multi-tier transport that moves along a spectrum. You can choose between fully ROS-observable but slightly slower, or fully binary-encoded and fast, depending on what your control loop actually needs.
You'll leave with a pattern for running ros2_control on Zephyr-class hardware and a feel for working with ROS and ros2_control. We'll demo the stack balancing a real inverted pendulum on an ESP32, where latency is the difference between upright and toppled.
Friday October 9, 2026 11:05 - 11:45 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

11:15 CEST

Lightning Talk: One Line of YAML Leaks Your Secrets: The Pwn-Request Pattern - Arpit Jain, Self Employed
Friday October 9, 2026 11:15 - 11:25 CEST
A pull_request_target trigger plus ref: ${{ github.event.pull_request.head.sha }} in a checkout step. That combination lets any external contributor run arbitrary code with your repository's secrets and write token. This is the "pwn request" pattern, and it's in production workflows across some of the most popular open-source projects on GitHub.

I'll use a real finding (a CRITICAL-severity pwn request I discovered and privately disclosed in an Apache project) to explain how the attack works: what pull_request_target does differently from pull_request, why adding permissions: read-all doesn't protect you, and why the attacker needs nothing beyond opening a pull request.

Then I'll show the three mitigations that work: splitting into unprivileged build and privileged post-processing steps, using persist-credentials: false, and gating on the head repo matching the base.
Speakers
avatar for Arpit Jain

Arpit Jain

Security Researcher, Self Employed
Supply-chain security researcher focused on CI/CD pipeline vulnerabilities. Audits GitHub Actions workflows across CNCF, sigstore/SLSA, OpenSSF, and US federal government orgs (cisagov, GSA) for exploitable patterns: pwn requests, unpinned actions, token-scope misconfigurations. Has... Read More →
Friday October 9, 2026 11:15 - 11:25 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

11:35 CEST

Lightning Talk: Prove It: Is Your Kubernetes App Cloud Native? - Martin Matyáš, Tieto
Friday October 9, 2026 11:35 - 11:45 CEST
Everyone claims their app is cloud-native. But how to prove it?

CNTi Testsuite, an open-source Linux Foundation project, provides automated tests that validate cloud-native best practices such as security, scalability, and upgradability. While designed for telecom CNFs, it works for any Kubernetes application.

In this lightning talk, I’ll show how you can run CNTi Testsuite in minutes to objectively measure cloud-native maturity and uncover hidden gaps in Kubernetes workloads.
Speakers
avatar for Martin Matyáš

Martin Matyáš

Lead Cloud Engineer, Tieto
Lead cloud engineer with 20+ years of experience in application development and testing mostly in telecom industry. Worked on various aspects of Telecom software, from platforms, applications, test tools, continuous integration. Active member and maintainer of LFN's CNTi communit... Read More →
Friday October 9, 2026 11:35 - 11:45 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

11:55 CEST

Minimal Viable AI Platform - Max Körbächer, Liquid Reply
Friday October 9, 2026 11:55 - 12:35 CEST
Creating your own AI platform sounds like a job for a funded team and a matching cloud bill. Surprisingly, it isn't. I want to show how a handful of open source tools combine into a minimal viable AI platform that runs on one machine from a single Docker Compose file.
Five layers are all needed for a valuable platform: LiteLLM as the gateway (one API for any model, with keys and cost tracking), Open WebUI as the chat interface, n8n for automation and agents that take real actions, Ollama for private local models, and Langfuse for request tracing.
Then we look at how to grow it (RAG, authentication, scaling) without adding a pile of disconnected tools. This setup can be advanced for every demand.
The setup is indeed not perfect, but it is a valid starting point for organizations of any size.
No enterprise budget needed, just you, some OSS tools and a little bit of interest.
Speakers
avatar for Max Körbächer

Max Körbächer

Chief Technology Advisor & CEO, Liquid Reply
Max Körbächer is the Founder and Chief Technology Advisor at Liquid Reply, a CNCF Ambassador and Governing Board Member, LF Europe Advisory Board member and the author of the book Platform Engineering for Architects. Max specializes in translating the crushing complexity of cloud... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
Terrace 2A (Floor 2)
  Open Source 101

11:55 CEST

Burnout in Open Source: A Structural Problem We Can Fix Together - Miranda Heath, Software Stewardship Lab
Friday October 9, 2026 11:55 - 12:35 CEST
I'm a psychologist and researcher at the [Software Stewardship Lab](https://stewardshiplab.org/). Moved by the extent of burnout among Open Source developers, I have written what I believe to be the most comprehensive report to date on burnout in Open Source. This entailed a review of the academic literature, a qualitative analysis of online discussion in the OSS community, and interviews with OSS maintainers.

I present 5 factors my research identified that contribute to developer burnout: difficulty getting paid, workload and time commitment, maintenance work as unrewarding, toxic community behaviour and hyper-responsibility. I discuss 3 structural changes we can make to address developer burnout: make it easier for OSS developers to get paid, distribute maintenance responsibilities, and strengthen developer community, solidarity and capacity for advocacy. Finally, I preview the findings of a follow-up study I am currently undertaking exploring the impact of the rise of AI coding on OSS developer burnout, including where it is exacerbating existing causes of burnout, and where it might help alleviate them.
Speakers
avatar for Miranda Heath

Miranda Heath

Director and Researcher, Software Stewardship Lab
Director and researcher at the Software Stewardship Lab, an applied research non-profit dedicated to ensuring the stability of the Open Source software ecosystem. I research burnout in Open Source, investigating the structural issues that put developers at risk of burnout and how... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
Conference Hall (Floor 4)

12:15 CEST

The Hard Limits of a (de)-centralized OSPO - Sebastian Grüner, E.ON Digital Technology & Benjamin Rilz, E.ON Digital Technology GmbH
Friday October 9, 2026 12:15 - 12:35 CEST
Starting up an OSPO is not an easy task - let alone for 300+ companies. That's the scale and problem space we face in the highly federated and distributed enterprise of E.ON.

One of Europe's biggest energy utility provider has it all: critical infrastructure, regulations, services for millions of customers, purpose built hardware, SaaS businesses, an unfathomable amount of suppliers and engineers all over the place.

So before we could even start with our own ideas about the OSPO management we needed to get a hold of the status quo at E.ON for any kind of engineering and business operations. Two years after starting the OSPO we're far from done doing that yet, but we already established quite a bunch of successful initiatives.

We'll present our idea of an Hub-and-Spoke-OSPO, targeted initiatives for distinct parts of the business, curing pain points, building recurring collaborations within the enterprise and how to become more visible as 2-person-OSPO with nearly 80.000 coworkers.
Speakers
avatar for Sebastian Grüner

Sebastian Grüner

Open Source Consulting Manager, E.ON Digital Technology
Leads the OSPO initiative at the IT subsidiary of E.ON, helping transform our grid for a carbon neutral future. Before that he worked 13 years as a journalist and editor covering Open Source - technology and software as well as the sociopolitical influence of the projects and their... Read More →
avatar for Benjamin Rilz

Benjamin Rilz

Junior Tech Consultant, E.ON Digital Technology GmbH
I work in the Open Source Program Office at E.ON Digital Technology GmbH, where I focus on connecting the Open Source ecosystems with practical business needs in the energy sector. I have already attended several Linux Foundation conferences, but I haven’t given a talk yet. In this... Read More →
Friday October 9, 2026 12:15 - 12:35 CEST
South Hall 1 A (Floor 1)

14:00 CEST

OpenChain in Central and Eastern Europe: Year One - Vladimir Slavov & Nikola Babadzhanov, Bosch
Friday October 9, 2026 14:00 - 14:20 CEST
One year ago, we created the OpenChain Meridian 22 Work Group for Central and Eastern Europe. In this year, our community has grown to include members from Poland, Hungary, Finland, Romania, Bulgaria, Greece, and other countries. We promoted OpenChain and our WG formally at open source and security events in Serbia, Slovenia, and Bulgaria, and informally in other parts of Europe and the world. We work in close collaboration with other open source communities to organize free events across Europe.

This talk is a retrospective on this past year of expanding the OpenChain community in the region. We will showcase the interesting topics we focus on in our WG, and share the lessons we learned along the way. We would like to use the talk to promote the WG locally.

The first part of the talk will focus on the journey: how we launched the OpenChain Meridian 22 WG, our promotion activities, and the topics we have tackled so far.

The second second part, about the takeaways: what makes this region special, why we received attention mostly from security communities, and other such curiosities.

The last part will be an overview of the co-located event we are organizing with the community.
Speakers
avatar for Vladimir Slavov

Vladimir Slavov

Open Source Consultant, Bosch
Vladimir is a lawyer and a programmer. He works at Bosch's Open Source Program Office, focusing on open source management and compliance. He is an AWS Certified Solutions Architect Associate, an AWS Certified AI Practitioner, and an AWS Certified Cloud Practitioner. He co-chairs the... Read More →
avatar for Nikola Babadzhanov

Nikola Babadzhanov

Open Source Management Consultant, Bosch
Nikola Babadzhanov, a Bosch Open Source Consultant since 2022 and a member of the Bosch OSPO, focusing on software and Open Source management. He expertly applies his FinTech regulatory compliance experience to the unique challenges of Open Source compliance.

Formerly the chair of a Bosch group on secure and compliant containers, Nikola is a dedicated OpenChain Ambassador, a committer on the Eclipse Apoapsis project, and an active member of the OpenChain SBOM, AI, and Tooling work groups... Read More →
Friday October 9, 2026 14:00 - 14:20 CEST
South Hall 1 A (Floor 1)

14:00 CEST

The Journey of Adding Hardware Support To Mainline - Sven Püschel, Pengutronix
Friday October 9, 2026 14:00 - 14:40 CEST
Since v4.15 the kernel has support for the second version of the Raster Graphic Acceleration (RGA) IP core of Rockchip SoCs.
The newer RK3588 SoC additionally ships two RGA cores with version 3 and so I was tasked to extend the driver to support them.

7 months and 7 patch series versions later the driver was merged in Linux v7.2.

The talk walks through my journey to getting my first driver upstream. It shows where I had understood things the wrong way, where I've tried to do too much and where I've had to invest more work. Spiced up with some anecdotes about erroneous manuals, erratic hardware behavior and errors which only arise under load.

The talk is intended for beginners who are interested in doing mainline work. Besides showing the effort required and the frustrating moments, I want to encourage putting in the effort and showcase some of the nice solutions it has produced.
Speakers
avatar for Sven Püschel

Sven Püschel

Software Engineer, Pengutronix
Sven Püschel is an open-source developer working part-time at Pengutronix since 2024.
He supports customers to achieve their goals using popular open source software
and bringing the necessary additions for the customer use-case to upstream.
From adding Wayland protocols down to... Read More →
Friday October 9, 2026 14:00 - 14:40 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

14:50 CEST

Panel: Found It. Filed It. Forgotten? The Open Source Fix Problem in AI Era - Rao Lakkakula, Microsoft; Amanda Casari, Google; Stormy Peters, AWS
Friday October 9, 2026 14:50 - 15:30 CEST
We have become highly effective at finding vulnerabilities, accelerated by AI-driven analysis. We can scan at scale, assign scores, and generate reports with unprecedented speed. The breakdown happens after discovery.

For many maintainers, security reports arrive as noise: limited context, unclear expectations, and little support to carry fixes through to completion. Backlogs grow, trust declines, and critical issues remain unresolved.

This panel brings together security and open source leaders from Microsoft, Google and AWS to confront an uncomfortable reality: discovery is the easy part. Remediation, especially in shared infrastructure maintained by a small number of overextended contributors, is where the system fails.

We will explore what actually helps maintainers move from report to resolution. What makes a report actionable? How do we reduce noise and avoid drive-by reporting? How do we support fixes through triage, patching, and downstream adoption without taking over projects?

If you are a struggling maintainer or an industry consumer who wants to support OSS you depend on without overloading it, this session is for you. The focus is simple: fixes that land.
Speakers
avatar for Rao Lakkakula

Rao Lakkakula

Partner Director, Microsoft
Rao Lakkakula is Director of Open Source Ecosystems at Microsoft. He brings over 25 years of experience in security and software development, with prior leadership roles at JPMorgan Chase, The Climate Corporation, Amazon, and several startups. Rao serves on the Linux Foundation Research... Read More →
avatar for Amanda Casari

Amanda Casari

Staff Developer Relations Engineer, Google
amanda casari is a researcher and engineer in the Open Source Programs Office at Google, where she is co-leading research and engineering to better understand risk and resilience in open source ecosystems. She was named an External Faculty member of the Vermont Complex Systems Center... Read More →
avatar for Stormy Peters

Stormy Peters

Head of Strategy & Marketing, AWS
Stormy Peters is Head of Open Source Strategy & Marketing at AWS.
Friday October 9, 2026 14:50 - 15:30 CEST
Club H (Floor 1)
  Digital Trust

14:50 CEST

Linkable Loadable Extensions and the Extension Developer Kit - Lauren Murphy, Intel
Friday October 9, 2026 14:50 - 15:30 CEST
The Linkable Loadable Extensions (LLEXT) subsystem supports loading and linking ELF files at runtime, enabling developers to add sandboxed plugin-like functionality to Zephyr applications. This session offers a discussion of how LLEXT works and how it can work for you, as well as an overview of the Extension Developer Kit (EDK). The EDK allows users to build extensions without building the main binary, enabling teams working on complex firmware to neatly divide efforts between individual loadable modules and the main binary.
Speakers
avatar for Lauren Murphy

Lauren Murphy

OS Development Engineer, Intel
Lauren Murphy has been a software engineer on the Intel team of Zephyr contributors since 2021. As a LLEXT contributor, she added support for ARC and x86, as well as Harvard architectures.
Friday October 9, 2026 14:50 - 15:30 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

15:40 CEST

Kids Programming in Turtlegrove - Making Beautiful Things Together - Pascal van Dam, pascalvandam.com
Friday October 9, 2026 15:40 - 16:20 CEST
In 1967, Seymour Papert, Wally Feurzeig, and Cynthia Solomon built a language based on studies of Piaget whose radical premise still hasn't been fully cashed in: children should program the computer, not be programmed by it. Logo gave them a turtle an "object to think with" and a place to live in mathematics by walking it, drawing it, and making it their own.

Half a century later, most kids meet software as something to consume, not construct. This talk argues that Papert's constructionism and the free-software ethos are the same idea one generation apart, both are about the freedom to understand and reshape your own tools and that open source is exactly how we finally deliver Logo's promise at scale.

I'll show TurtleGrove: a UCBLogo compatible interpreter we created that runs in any browser, with a Rust core and a vanilla-JS frontend, fully open source and self-hostable.

In the OpenSource mindset children can even show-and-share their code with other children. Working on their own canvas or creating art together. Children learn the best, when learning together. We use this also in the Living OpenSource project to introduce kids in African countries into programming.
Speakers
avatar for Pascal van Dam

Pascal van Dam

Trainer & Architect, pascalvandam.com
Pascal has been working with Linux and Opensource since the early days of 1991. He's having almost 30 years of experience in of UNIX and Linux. He has been delivering courses since 1997.

Next to being a trainer Pascal is the hired Linux/K8S architect for ATOS.

Pascal has a fond... Read More →
Friday October 9, 2026 15:40 - 16:20 CEST
Terrace 2A (Floor 2)
  Open Source 101

16:30 CEST

Updates on Sbom-cve-check: An Open-source CVE Analysis Tool for Embedded Systems - Benjamin Robin, Bootlin
Friday October 9, 2026 16:30 - 16:50 CEST
With embedded devices now everywhere, from home appliances to industrial systems, it is vital to regularly scan them so that any known vulnerability (CVE) in software components can be identified and addressed before they become security risks.

Regularly monitoring these CVEs will be mandatory in various cases to comply with the EU Cyber Resilience Act (CRA), which pushes the industry towards more accountable and proactive security in embedded systems.

Released in December 2025, sbom-cve-check is an open-source automated vulnerability analysis tool. It operates directly on a Software Bill of Materials (SBOM), without requiring access to the original build environment. SBOMs can be generated from build systems such as Yocto, enabling post-build security analysis even when the build infrastructure is unavailable.

This talk will present sbom-cve-check, highlight its major improvements over the past six months, and explain how it is now fully integrated into Yocto, replacing the built-in cve-check class.

sbom-cve-check is provided under the GPLv2 license, and contributions are, of course, welcome :)
Speakers
avatar for Benjamin Robin

Benjamin Robin

Embedded software engineer, Bootlin
Benjamin Robin is an embedded Linux engineer with 14 years of experience. He joined Bootlin in 2025. Before joining Bootlin, he held roles as both an embedded software engineer and an embedded Linux engineer. Over the years, he gained extensive experience across a wide range of industries... Read More →
Friday October 9, 2026 16:30 - 16:50 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

16:30 CEST

Generative AI and FOSS - Not Just the How but Also the Why - Carol Chen, Red Hat
Friday October 9, 2026 16:30 - 17:10 CEST
I've given several talks & workshops on various GenAI tools in the past couple of years. Generally the goals of the presentations are to demonstrate the how - how to fine tune a model, how to prepare data for RAG systems, how to use this framework or optimize that pipeline - I find that a lot of the discussions which happen during and after the workshop are around the why.

Why is structured data important? Why do we care about open source and open weights in models? Why does context size matter? Why can't I run/reproduce the same AI set up on my laptop? Why do I even have to use GenAI??

These and many more questions have popped up and quickly drowned in the rush to keep up with the next new AI tool or agent. I'd like to provide a space for everyone, especially those new to GenAI and/or open source, to pose these questions and discuss them without worring about missing out. Whether you are a skeptic or have your fully agentic workflow set up, we might share similar concerns and doubts. Bring your ideas and opinions!

During the BoF, I will also share various open source resources that may be relevant and useful in answering your questions and better prepare you on the AI journey.
Speakers
avatar for Carol Chen

Carol Chen

Principal AI Community Architect, Red Hat
Carol Chen is a Community Architect at Red Hat, having led several upstream communities including InstructLab, Ansible and ManageIQ. She has been actively involved in open source communities while working for Jolla and Nokia previously. In addition, she also has experiences in software... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
Terrace 2A (Floor 2)
  Open Source 101

16:30 CEST

Running OSPOs at Scale: Hard-Won Lessons From Germany Industry - Thomas Steenbergen, OSSYN & Helio Chissini de Castro, Cariad
Friday October 9, 2026 16:30 - 17:10 CEST
Most organizations know they should manage open source strategically and efficiently. Few know how to actually do it when you're moving fast, resources are tight, and a supply chain incident can land on the front page.

Over the past several years, we've helped build and run Open Source Program Offices across multiple large German automotive and technology organizations. This session distills what actually worked - and what didn't.

We'll share concrete lessons on: getting buy-in from C-level to developer teams; surviving and learning from supply chain security incidents; scaling compliance without drowning engineers in process; using AI to cut OSPO workflow overhead; and growing open source contribution and compliance culture.

Along the way, we'll show how we used OSS Review Toolkit (ORT), a Linux Foundation project, as the automation backbone - and what we learned making it work in large, regulated industries.

You'll leave with a clearer picture of what it takes to scale open-sourcing and compliance in a regulated industry, and the mistakes worth skipping.
Speakers
avatar for Thomas Steenbergen

Thomas Steenbergen

Principal Consultant / ORT co-founder and maintainer, OSSYN
Thomas Steenbergen specializes in strategic open source management, helping organizations align their practices with business goals. An expert in open source adoption, community building, and compliance (including SBOMs), he is freelance consultant currently working for OSPOs of CARIAD... Read More →
avatar for Helio Chissini de Castro

Helio Chissini de Castro

Software Tooling Lead, Cariad
Helio Chissini de Castro has 25 years of open source experience in multiple areas, from contributions to community management and entire project design. His entire professional life was around bring open source to the most possible areas. On recent years, Helio has an ongoing effort... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
South Hall 1 A (Floor 1)

16:30 CEST

Voluntary Transparency, Involuntary Security: A Maintainer's Guide To CRA Readiness - Roman Zhukov, Red Hat
Friday October 9, 2026 16:30 - 17:10 CEST
The enforcement window for the EU Cyber Resilience Act (CRA) is arriving, triggering corporate compliance panic. While individual open-source developers and volunteer maintainers have zero obligations under the CRA, their downstream commercial adopters face mandatory due diligence requirements. How do Maintainers survive being bombarded with manual security questionnaires and subtle attempts to shift regulatory liability upstream?

The co-chair of the OpenSSF Global Cyber Policy Working Group and co-creator of the CRA Readiness Guide for Maintainers will walk you through converting the OpenSSF voluntary checklist into automated repository-level defenses. Attendees will see how to deploy the open-source OSPS Baseline Scanner GitHub Action to perform security gap analysis, expose standardized project postures via machine-readable security-insights.yaml files, and anchor liability disclaimers into repositories to push due-diligence burdens back downstream.
Speakers
avatar for Roman Zhukov

Roman Zhukov

Security Community Lead, Red Hat
Roman is a cybersecurity expert with 20+ years of experience securing complex systems and products. As Principal Architect at Red Hat, he drives open-source security strategy and cross-industry collaboration to build trusted software ecosystems. Formerly, he led Product Security... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
Conference Hall (Floor 4)

16:30 CEST

Safety Critical Software BoF - Philipp Ahmann, ETAS GmbH & Olivier Charrier, Wind River
Friday October 9, 2026 16:30 - 17:10 CEST
Interest in safety critical open source software is high, yet opportunities to connect and openly discuss challenges remain limited. This BoF creates a focused forum for practitioners and newcomers to exchange experiences, ask questions, and gain visibility into existing projects and initiatives.

It also highlights the role of initiatives such as the Linux Foundation ELISA project as a central interface within the ecosystem, helping to connect efforts across communities, share practices, and make ongoing work more discoverable. The project brings together horizontal working groups covering features, processes, architecture, and tooling, while also addressing vertical domains such as automotive, aerospace, space, railways, and medical. This reflects the growing relevance of Linux and open source in safety critical systems.

By enabling direct interaction and cross project exchange, the session supports alignment, reduces duplication, and fosters collaboration in an evolving safety critical OSS landscape.

Participants at all levels of experience are encouraged to join, contribute their perspective, and engage with the community.
Speakers
avatar for Philipp Ahmann

Philipp Ahmann

Automotive OSS Process Lead, ETAS GmbH
Philipp Ahmann is a Senior OSS Community Manager at ETAS (a Bosch subsidiary), specializing in safety-critical automotive open source software. With 15+ years' experience in Linux automotive platforms, he has held roles from software engineer to project & line manager.
He currently holds the position of the technical steering committee chair for the Linux Foundation ELISA project to Enable Linux in Safety Applications. Additionally, he is member of the Linux Foundation Europe Advisory Board... Read More →
avatar for Olivier Charrier

Olivier Charrier

Principal Technologist - Functional Safety, Wind River
Olivier Charrier obtained a Master’s degree in Software Engineering (DESS) from Bordeaux University in 1989.
After working for Alsys/Aonix on Ada development environment for embedded systems, Olivier joined Wind River in June 2001 where his focus is to help Wind River's customers define, implement and certify Safety Critical Systems for multiple market segments including Avionics, Automotive... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
Club A (Floor 1)
  Safety-Critical Software
 
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -