Loading…
7-9 October, 2026
Prague, Czechia
View More Details & Registration
Important Note: Timing of sessions and room locations are subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit Europe 2026 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.



Company: Intermediate clear filter
Wednesday, October 7
 

09:05 CEST

Marrying Device Tree and SCMI - Geert Uytterhoeven, GLIDER bv
Wednesday October 7, 2026 09:05 - 09:45 CEST
Traditionally, Linux has been fully responsible for and in full control of all hardware components in an embedded system, as described by its Device Tree (DT). With the advent of heterogeneous System-on-Chips (SoCs) with multiple CPU cores (Application and Real-Time) and security technologies (Secure Boot, Trusted Environments, Virtualization), this is no longer the case. To avoid compromising system integrity, Linux must now be prevented from controlling system resources used by other CPU cores, and cannot be tasked with control of shared system resources, while Linux still needs to access these resources.

The Arm System Control and Management Interface (SCMI) is intended to solve this, by providing a firmware interface to handle access to system resources like clocks and power domains.

In this presentation, targeting Embedded Linux Developers and System Architects, Geert will give an overview of SCMI, and its impact on DT hardware description. He will discuss the challenges of supporting multiple evolving firmware versions and lineages, and possible solutions, based on experience gained while upstreaming Linux support for R-Car X5H, Renesas' fifth-generation automotive SoC.
Speakers
avatar for Geert Uytterhoeven

Geert Uytterhoeven

Embedded Linux Kernel Hacker, GLIDER bv
Geert Uytterhoeven became involved with Linux 30 years ago, when he started hacking the Linux kernel to make it work better on his Amiga. This paved the way for a long string of contributions to Linux.
In 2013, Geert founded Glider bv (http://glider.be/), to build upon the (embed... Read More →
Wednesday October 7, 2026 09:05 - 09:45 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

09:05 CEST

Triaging CVEs for the Linux Kernel - Christoph Steiger & Negar Masoudifar, Siemens AG
Wednesday October 7, 2026 09:05 - 09:45 CEST
The Linux kernel currently sees around 60 CVEs per week. With the EU Cyber Resilience Act (CRA) rapidly approaching this creates a serious challenge for anyone shipping commercial products based on it: a lot of additional vulnerability management and compliance work.

In this talk, we will introduce kernel-cve-triage, a tool developed under the umbrella of the Civil Infrastructure Platform (CIP). It addresses these compliance challenges with a unique approach, using the kernel’s Kconfig build configuration to determine which reported CVEs actually apply. With this method, we base our assessment only on the kernel source tree and its configuration and are build-system independent. This reduces false-positive CVEs by up to 95%, depending on the exact configuration and the set of vulnerabilities considered.

We will also cover the key differences compared to another major kernel CVE automation tool: the Yocto Project and its cve-check. Finally, we will give an outlook and suggestions on how to improve the current situation for the Linux kernel's users.
Speakers
avatar for Christoph Steiger

Christoph Steiger

Embedded Linux Engineer, Siemens AG
Open Source enthusiast who is working on embedded Linux systems. He focuses on all things Linux Kernel: from driver implementation to real-time applications and supply chain security.
avatar for Negar Masoudifar

Negar Masoudifar

Working Student – Embedded Linux, Siemens AG
Negar Masoudifar is a working student at Siemens focused on Linux kernel development and embedded systems. She works on the CIP kernel CVE triage project, building tools to help figure out which vulnerabilities actually matter for a given kernel setup.
Wednesday October 7, 2026 09:05 - 09:45 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

09:05 CEST

Zephyr at 10: Scaling an Open Source RTOS for the Next Decade - Anas Nashif, Intel
Wednesday October 7, 2026 09:05 - 09:45 CEST
Over the last decade, Zephyr has grown from a focused open source RTOS into one of the most widely adopted platforms for connected, secure, and portable embedded systems. That success brings new challenges: more architectures, more boards, more vendors, more contributors, more downstream users, and higher expectations around quality, security, safety, documentation, testing, and long-term maintenance.

This talk looks at Zephyr’s evolution through the lens of project sustainability. It will highlight where the current model is working, where scaling pressure is becoming visible, and what the community needs to address to keep Zephyr healthy for the next 10 years. Topics include maintainer bandwidth, review latency, infrastructure load, test and sample growth, vendor enablement, downstream compatibility, long-term support, security updates, dependency management, and the tension between a unified upstream and the need for product- and platform-specific innovation.
Speakers
avatar for Anas Nashif

Anas Nashif

Senior Prinicipal Engineer, Intel
Senior Principal Software Engineer at Intel and TSC chair of the Zephyr project.
Wednesday October 7, 2026 09:05 - 09:45 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

09:50 CEST

An Approach To Managing CVEs With Vendor Kernels - Jan Pfiffner, Grossenbacher Systeme AG
Wednesday October 7, 2026 09:50 - 10:30 CEST
Managing vulnerabilities in the kernel has gotten more attention but also needs more effort due to the exploding number of CVEs. With the kernel now being a CNA since 2024, options have evolved, and most recently, since 596ad6c on openembedded-core/master, it has gotten "easy".

But this is not working for vendor kernels, as they lag mainline and a rebase is impractical, if not impossible, due to the vendor delta.
As vendor kernels are heavily used in the industry and a switch to linux-yocto is often not possible due to budget, timeline or vendor lock-in, a solution is needed.

I've built a solution that locates the fix for each detected CVE on the matching stable branch, emits a candidate backport patch, verifies it applies cleanly, checks (via koverage, at line granularity) whether the affected code is compiled, and classifies results into actionable buckets.
Output is a list of unaffected CVEs and a collection of patches for review. In my opinion, this is verified and evidence-backed patching rather than just a cherry-picked list.

I'd like to present a solution (layer) which includes this workflow and start a broader discussion about the issue with vendor kernels.
Speakers
avatar for Jan Pfiffner

Jan Pfiffner

Head of Software Engineering, Grossenbacher Systeme AG
I'm Head of Software Engineering at Grossenbacher Systeme AG (GESYS), a Swiss embedded systems manufacturer. After several years in PLC and machine vision software development, I moved into embedded and have spent the last four years working with Yocto, building, producing and maintaining... Read More →
Wednesday October 7, 2026 09:50 - 10:30 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

09:50 CEST

Reproducible Embedded Linux Testing From Laptop To CI To Scale - Anders Roxell, Linaro
Wednesday October 7, 2026 09:50 - 10:30 CEST
Kernel and embedded Linux engineers often need to reproduce a build or test from someone else. In practice this is still harder than it should be.

A kernel may be built with one toolchain. The rootfs may come from a local build. Firmware may have changed. A model may need specific variables. Continuous Integration (CI) and lab runs may hide setup steps in scripts or jobs.

Then someone asks:

Can I reproduce this?

Too often the answer is: not easily.

This talk shows a practical way to make this better with modern open source tooling, and to show useful workflows that kernel and embedded engineers may not know about yet.

We show how to build the kernel in a repeatable way, provide a known rootfs, boot the target, run tests, and collect logs.

Then we use two Arm examples. One is an OP-TEE flow, where TF-A, U-Boot, and OP-TEE are part of the setup. The other is a CCA flow on QEMU-arm64 and FVP-aemva, where the model setup and software stack also matter.

We use open source tools from the TuxSuite ecosystem, but the focus is the workflow. The same workflow can run on a laptop, in CI, in lab infrastructure, or at scale.
Speakers
avatar for Anders Roxell

Anders Roxell

Senior Engineer, Linaro
Anders Roxell is a Linux kernel engineer at Linaro, focused on testing and platform validation. He's a KernelCI and TuxSuite contributor, and works currently on the Linux kernel builds and tests workflows.
Wednesday October 7, 2026 09:50 - 10:30 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

11:20 CEST

Open Source Security as the Foundation of European Sovereignty - Madalin Neag & Mirko Boehm, The Linux Foundation
Wednesday October 7, 2026 11:20 - 11:40 CEST
European digital policy is often discussed through frameworks such as NIS2, the CRA, DORA, the CSA, and the broader Tech Sovereignty agenda. Yet these initiatives share a common objective: securing the software supply chains underpinning Europe’s critical digital infrastructure.

OSS is the foundation of modern technology stacks, from cloud services and critical infrastructure to financial systems and AI. It is also inherently global, developed and maintained by a distributed ecosystem across borders. As reliance on OSS grows, the challenge is no longer whether it is used, but how it is integrated, governed, and secured throughout its lifecycle within this global dependency network.

This session explores software supply chain security as the common thread across Europe’s cyber and digital policy landscape. It examines how regulations converge on transparency, dependency management, vulnerability handling, provenance, and secure development practices.

Finally, it connects these developments to EU Tech Sovereignty goals, arguing that secure and standardized consumption of globally developed open source is key to Europe’s resilience, competitiveness, and technological sovereignty.
Speakers
avatar for Mirko Boehm

Mirko Boehm

Community Development, Linux Foundation Europe

avatar for Madalin Neag

Madalin Neag

EU Policy Advisor, OpenSSF/The Linux Foundation
Madalin is the EU Policy Advisor at OpenSSF, working at the intersection of cybersecurity, open source software, and European technology policy. He helps connect open source technical communities and policymakers, supporting the development of practical regulatory frameworks, aligning... Read More →
Wednesday October 7, 2026 11:20 - 11:40 CEST
Chamber Hall (Floor 3)

11:20 CEST

Evolving the YAML Family (without Breaking the World) - Ingy döt Net, YAML LLC
Wednesday October 7, 2026 11:20 - 12:00 CEST
YAML turned 25 this year.
It is essential to Kubernetes, Docker, Ansible, CI pipelines, and config files for everything in between.
That ubiquity is both a gift and a curse: every change risks breaking something, somewhere, silently.
So how do you grow a data language that a billion files depend on without risk of catastrophe?

Ingy döt Net helped invent YAML and he now maintains the YAML Specification and The YAML Family (libyaml, go-yaml, PyYAML, YAMLStar, YAMLScript etc).
In this talk he'll show how he plans to grow YAML by extension: a plugin system that can deeply affect YAML behavior in completely configurable ways.
Plugin APIs include schema association, tab indent, standard functions, comment support include i18n.
This is being delivered first to go-yaml with the rest of the Family to follow.
The work and its real world feedback will guide future changes to the specification.
Speakers
avatar for Ingy dot Net

Ingy dot Net

Invented YAML, YAML LLC
Ingy döt Net is one of the original inventors of the YAML data language, and its primary maintainer. He is also the active maintainer of go-yaml, the YAML framework trusted by Kubernetes and much of its ecosystem,
Wednesday October 7, 2026 11:20 - 12:00 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

11:20 CEST

FIT Happens: How Secure Boot Wasn't - Ahmad Fatoum, Pengutronix e.K.
Wednesday October 7, 2026 11:20 - 12:00 CEST
Flat Image Tree (FIT) is Das U-Boot’s preferred boot image format and underpins billions of embedded Linux boot flows, with adoption extending into other bootloaders such as barebox.

Its core idea of using the flattened device tree format for flexibility and code reuse, enabled widespread adoption, but also became a fertile source of subtle security flaws.

This talk traces FIT’s evolution from a pragmatic design choice to a widely trusted format, highlighting how its structure led to recurring weaknesses, culminating in CVE-2026-33243, a decade-old vulnerability whose exploitation bypassed verified boot for millions of devices.

Finally, Ahmad presents a proposal to improve FIT: a backwards-compatible scheme for whole-image signing that requires limited parsing, aiming to deliver stronger security guarantees without the format’s historical pitfalls.
Speakers
avatar for Ahmad Fatoum

Ahmad Fatoum

Kerningenieur, Pengutronix e.K.
Ahmad joined the kernel team at Pengutronix in 2018 to work full-time on furthering Linux world domination. He does so by helping automotive and industrial customers build embedded Linux systems based on the mainline Linux kernel.
Having a knack for digging in low-level guts, his... Read More →
Wednesday October 7, 2026 11:20 - 12:00 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

11:20 CEST

What Is Linux Doing With My RAM? - Vlastimil Babka, SUSE Labs
Wednesday October 7, 2026 11:20 - 12:00 CEST
This talk will cover several memory management concepts and underlying principles to give the audience a better understanding about what happens to the RAM on a Linux system, and how to determine that on their own system, namely:

- how much memory is used by userspace processes, the page cache, and the kernel itself
- how to determine accurately how much memory is used by individual processes
- why free memory is always eventually exhausted and what happens then
- how to observe what the kernel is doing to make memory available for allocations, and recognize when it's struggling
- what is the role of swap and why not fear swapping

This includes explaining some key parts of files like /proc/meminfo and /proc/vmstat.
Speakers
avatar for Vlastimil Babka

Vlastimil Babka

Linux Kernel Developer, SUSE Labs
Vlastimil works as a kernel developer at SUSE Labs since 2013, focusing on the memory management subsystem. He currently co-maintains the slab and page allocators, and is a reviewed for several other parts of mm. He is also interesting in performance improvements, debugging features... Read More →
Wednesday October 7, 2026 11:20 - 12:00 CEST
Panorama Hall (Floor 1)
  Linux

11:20 CEST

Containers as an Illusion - Michael Kerrisk, man7.org Training and Consulting
Wednesday October 7, 2026 11:20 - 12:00 CEST
One goal of containers is to provide an illusion: that a group of
processes are in a world of their own, and that there are no other processes on the system. In this session1, we'll look at the nature of that illusion and–through a series of experiments and live demonstrations–examine the various Linux mechanisms–namespaces, capabilities, cgroups (control groups), and seccomp–are used to support the creation of that illusion. (Bring a laptop with a recent Linux distro installed!)
Speakers
avatar for Michael Kerrisk

Michael Kerrisk

Trainer/author/programmer, man7.org Training and Consulting
Michael Kerrisk is a trainer, programmer, and author of "The Linux Programming Interface", a widely acclaimed book on Linux (and UNIX) system programming. From 2004 to 2021, he maintained the Linux "man-pages" project, which provides the primary documentation for Linux system calls... Read More →
Wednesday October 7, 2026 11:20 - 12:00 CEST
Terrace 2A (Floor 2)
  Open Source 101

11:20 CEST

Ten Years of Zephyr: Replace Linux, or Work With It? - Iuliana Prodan, NXP Semiconductors
Wednesday October 7, 2026 11:20 - 12:00 CEST
A decade after its launch, Zephyr has grown from a small RTOS into a capable, MMU-aware, userspace-supporting system running on application-class cores. So people keep asking: can it replace Linux? A better question is how the two can work together - and Zephyr already has what it needs to do that.

This talk shows how Linux and Zephyr run side by side on the same SoC, using parts Zephyr ships today: the IPC service layer, OpenAMP and RPMsg for messaging between the two cores, mailbox and shared-memory backends, and the mechanisms that let Linux start and stop Zephyr firmware. Based on real work on NXP i.MX and i.MX RT platforms, I'll show how these pieces fit, and where the hard parts are - memory layout, buffer sizes, address translation, and shutdown order.

The takeaway: after ten years, the interesting frontier isn't replacement. It's connecting the two so each kernel does what it's best at on the same chip.
Speakers
avatar for Iuliana Prodan

Iuliana Prodan

Software Engineer, NXP Semiconductors
Software Engineer at NXP and the company's Zephyr Technical Ambassador. With a background in Linux, particularly the audio subsystem and Sound Open Firmware, though main focus is now Zephyr. Maintains Zephyr's IPC subsystem, OpenAMP, and libmetal, and works on asymmetric multipro... Read More →
Wednesday October 7, 2026 11:20 - 12:00 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

13:30 CEST

How Git Clone Took Down Our CI for 20 Days - Yathartha Goenka, Mercari, Inc.
Wednesday October 7, 2026 13:30 - 14:10 CEST
One morning, CI across ~1,800 repos ground to a near-total halt. HTTP 401 from github.com, everywhere. Deterministic, not flaky. Valid tokens, healthy rate limits. GitHub support said "anti-abuse." We said "which abuse?"

Twenty days and 17,863,537 log records later, we'd gone deeper into git's open source plumbing than we ever intended: how git negotiates HTTP auth, what it leaks in user-agents, which config knobs actually matter under load, and how its defaults — sensible on a laptop — behave pathologically behind Kubernetes NAT at 50,000 CI runs a day.

This talk is a forensic walkthrough of git's HTTP transport, told through an outage: the red herrings, the tcpdumps, the fixes that didn't work, the fix that did. You'll leave knowing what git clone really does when you're not looking — and how to configure it so it never makes you look guilty.

Bring popcorn.
Speakers
avatar for Yathartha Goenka

Yathartha Goenka

Platform Engineer, Mercari, Inc.
A platform engineer at Mercari Japan, leading projects around DX, distributed systems and AI. Been working with backend development using Golang, CI/CD, cloud infrastructure, and scalable system design. Been learning more about the quiet ways a platform can fall over than I ever meant... Read More →
Wednesday October 7, 2026 13:30 - 14:10 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

13:30 CEST

20 Years of Quality Assurance for Embedded Linux Systems - The Good, the Bad, the Unexpected - Jan Altenberg, Open Source Automation Development Lab (OSADL) eG
Wednesday October 7, 2026 13:30 - 14:10 CEST
More than 20 years ago the idea of transforming Linux into a real-time operating system resulted in the birth of the PREEMPT_RT development. But how could the real-time properties of such a complex system be tested? Due to the complexity of modern operating systems, such as Linux, and due to the fact that modern processors operate in a performant but non-deterministic way, appropriate methods for evaluating the real-time behaviour of a given system had to be established: That's why the OSADL QA Farm was born. While the initial focus of the QA Farm was (and still is) the long-term evaluation of the real-time properties of Embedded Linux systems, 20 years of operation with more than 100 systems have also brought many other insights to light - expected and unexpected. This presentation provides an overview of the quality assurance methods used at the OSADL QA Farm, the insights gained from numerous long-term measurements and latest developments, such as the integration of Zephyr systems.
Speakers
avatar for Jan Altenberg

Jan Altenberg

Director R&D, Open Source Automation Development Lab (OSADL) eG
Jan Altenberg has more than 20 years of experience in developing and maintaining Embedded Linux systems. Since October 2021 Jan works as Senior Open Source Consultant and Embedded Systems Integrator at the Open Source Automation Development Lab (OSADL) eG and since 2024, he also serves... Read More →
Wednesday October 7, 2026 13:30 - 14:10 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

13:30 CEST

Journey of a Massive Internal Kernel Rework - Luca Ceresoli, Bootlin
Wednesday October 7, 2026 13:30 - 14:10 CEST
While changes to the internal kernel APIs and design are possible, that doesn't mean they are easy.

In preparation for a larger work to make the DRM subsystem support video output pipelines with hot-pluggable components, we have been working for the past two years to change the lifetime of `struct drm_bridge` in the DRM subsystem. This required changing the semantics of a dozen internal APIs and adaptations to more than 50 drivers.

This talk is not about the content of the changes but rather about the process to achieve it: the initial steps to find the best strategy, the continuation to convert all APIs, bugs introduced and reacting to them, working on lots of drivers without the chance to test them, dead ends encountered, tools used, the time required for the whole process, and the community interactions in the whole time span.

The focus will be on lessons learnt and which strategies worked better, and ultimately how to make a similar kind of massive conversion in the most efficient (and least frustrating!) way.
Speakers
avatar for Luca Ceresoli

Luca Ceresoli

Embedded Linux and Kernel engineer, Bootlin
Luca is an embedded Linux and kernel engineer at Bootlin, primarily working on device drivers and recently active mostly on DRM bridges to support hotplugging of non-discoverable devices.

He contributed several improvements the Linux kernel and other open source projects.

Luca... Read More →
Wednesday October 7, 2026 13:30 - 14:10 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

13:30 CEST

Off the Laptop, Into Production: An Open Source Stack for AI Agents on Kubernetes - Brian Hammons & Nirmal Mehta, Amazon Web Services
Wednesday October 7, 2026 13:30 - 14:10 CEST
AI agents are fast becoming how modern software gets built. But taking one from prototype to safe, production-grade operation is still genuinely challenging, and how they behave at scale remains largely uncharted. Agents are stochastic, so testing becomes continuous evaluation. They run code nobody wrote, so a shared kernel stops being a boundary you can trust. They decide their own network calls at runtime, so egress is no longer predictable. And they still need what any service needs: source control, CI/CD, observability, memory, and tool access.

This session walks the full lifecycle of running agents on Kubernetes, open source the whole way. The "outer loop" (build, deploy, trace, evaluate) runs on tools like GitLab, Argo, Langfuse, Milvus, and MCP gateways. The "inner loop" (isolated execution) runs on the kubernetes-sigs Agent Sandbox CRD, gVisor, and FQDN-aware egress via Cilium. We'll show what maps cleanly from the platform you run, what changes for agents, and the production gotchas no quickstart warns you about, drawn from building these in the open with teams running from a handful of developer sandboxes to the hundreds of thousands that frontier-scale RL spins up.
Speakers
avatar for Brian Hammons

Brian Hammons

Principal Solutions Architect, AWS
Brian Hammons is a Principal Architect at AWS, focused on Kubernetes-native AI agent development and platform engineering. He led the first AWS-backed contribution of the kubernetes-sigs Agent Sandbox CRD into the open source awslabs/ai-on-eks project. An Amazon EKS launch-team member... Read More →
avatar for Nirmal Mehta

Nirmal Mehta

World Wide Tech Leader - Containers, Amazon Web Services
Nirmal Mehta is the World Wide Tech Leader for Containers at AWS and a Principal Specialist SA in the Worldwide Application Modernization team. He is experienced in open source platform engineering, kubernetes, MLOps, agentic devops and executive org strategy. He has presented at... Read More →
Wednesday October 7, 2026 13:30 - 14:10 CEST
Forum Hall (Floor 2)
  Open AI & Data

14:25 CEST

Kata at Scale: The Hidden Cost of Running VMs Behind Every Container - Kavitha Daula & Ann Wallace, Edera
Wednesday October 7, 2026 14:25 - 15:05 CEST
There is a big difference between getting Kata Containers running in a proof of concept and operating a large multi-tenant Kata environment for years.

This talk is a practical, vendor-neutral look at what becomes hard after the demo works. Once every pod carries a lightweight VM lifecycle behind it, platform teams are no longer operating only Kubernetes. They are also operating guest kernels, guest images, VMMs, hypervisor behavior, virtio devices, runtime and agent version skew, and a second debugging surface under the container platform.

We will walk through production issues that show up at scale: guest kernel CVEs and regressions, host/guest kernel drift, CNI and tap-device networking, virtio-fs and storage durability semantics, fragmented observability, boot storms, vCPU oversubscription, memory accounting drift, NUMA behavior, GPU passthrough, VFIO/IOMMU lifecycle, upgrade matrices, and incident ownership.

This is not a criticism of Kata. Kata solves a real open source isolation problem. The goal is to help operators understand the operational work required to run VM-isolated containers safely and sustainably in production.
Speakers
avatar for Kavitha Daula

Kavitha Daula

VP of Engineering, Edera
Kavitha Daula is the VP of Engineering at Edera, where she leads the development of secure, high-performance container runtime technologies. Previously, she was Senior Director at GEICO, driving innovations in OS, containers, and language runtimes, including a custom Linux distro... Read More →
avatar for Ann Wallace

Ann Wallace

VP of Customer Experience, Edera
Ann Wallace is the VP of Customer Experience at Edera. Before Edera, she held leadership and architecture roles in security and cloud at Okta, Shopify, Google, and Nike. Ann speaks regularly at conferences on topics like compliance, container security, and using storytelling to make... Read More →
Wednesday October 7, 2026 14:25 - 15:05 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

14:25 CEST

Debugging Heisenbugs: The Nightmare of Every Embedded Engineer - Beleswar Prasad Padhi, Texas Instruments
Wednesday October 7, 2026 14:25 - 15:05 CEST
Defined as bugs which disappear or change behavior when observed, every embedded engineer has come across one at some point. Some classic examples include bugs that stop reproducing after adding printk() statements, introducing new variables, connecting a debugger or even simply recompiling the same source code. The root causes of Heisenbugs range all the way from race conditions, memory corruption, alignment issues, cache incoherency, incorrect linker configurations to even hardware bugs.

This talk walks through the debugging techniques which could be applied for debugging these Heisenbugs like static code analysis, memory analysis, diagnostic data collection, tracing and instrumentation, selective elimination of unrelated code paths, modifying assembly instructions at runtime; all without probing the observer’s effect. Beyond techniques, the talk aims to develop the intuition and thought process needed when confronting these bugs. The talk discusses how to distinguish between mere workarounds that mask the underlying issue vs actual fixes. Practical experiences in debugging real Heisenbugs will be shared along with their root causes, investigation approaches and the fixes.
Speakers
avatar for Beleswar Prasad Padhi

Beleswar Prasad Padhi

Senior Software Engineer at Texas Instruments, Texas Instruments
Beleswar is a Senior Software Engineer at Texas Instruments, actively working on Upstream Linux Kernel and U-Boot. His work mainly focuses on Remoteproc, RPMsg, Mailbox, Virtio subsystems, as well as boot-time optimizations. He was listed among the top contributors for Linux 6.18... Read More →
Wednesday October 7, 2026 14:25 - 15:05 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

14:25 CEST

SELinux in Embedded Linux: From Basics To Best Practices - Tobias Kaufmann, BMW Car IT
Wednesday October 7, 2026 14:25 - 15:05 CEST
Modern vehicles employ a highly integrated architecture with a relatively small number of powerful Electronic Control Units (ECUs). Many of these ECUs run Linux and present a sizable attack surface. To mitigate the resulting threats, SELinux offers an enhanced mechanism for enforcing the principle of least privilege.

Despite its strengths, SELinux remains complex and is not widely adopted. This talk offers a pragmatic introduction to SELinux, with concrete guidance you can apply to your embedded Linux project.

This session will cover basic permissions and type enforcement in SELinux, including which permissions are required for an application start-up. It will introduce the reference policy and guide you through writing a first “hello-world” policy. We will also discuss SELinux in the context of Yocto. Finally, we will conclude with lessons learned from our experience in large-scale projects.
Speakers
avatar for Tobias Kaufmann

Tobias Kaufmann

Security Architect for Head-Units, BMW Car IT
Tobias holds an M.Sc. in Electrical Engineering. After several years working on smart grid projects, he joined BMW Car IT in 2018. He currently serves as the Security Architect for head units at BMW Car IT.
Wednesday October 7, 2026 14:25 - 15:05 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

14:25 CEST

You're Measuring Memory Wrong: The Right Ways With DAMON - SeongJae (SJ) Park, Crusoe
Wednesday October 7, 2026 14:25 - 15:05 CEST
Memory efficiency problems are notoriously hard to see. DAMON was built to change that — but many users collect data incorrectly, visualize it poorly, and walk away with wrong conclusions. The tool gets blamed. The real problem goes unfixed.

This talk shows you the right ways to do it.

We cover data collection first: configuring sampling and aggregation parameters, the tradeoffs, and setup mistakes that corrupt your data before analysis begins.

We then walk through the visualization features in `damo` — heatmaps of access frequency across time and address space, working set size plots, and more. There is no single right visualization; we cover when to use each and how to read what it shows.

We also highlight mistakes that lead users astray: misreading sampling artifacts as real patterns, choosing granularities that hide behavior, observing too briefly to catch periodic patterns, and more. For each, we show what misleading output looks like and how to fix it.

By the end, you will know how to collect trustworthy DAMON data, pick the right visualization, and tell when your results are real versus when your setup is lying to you.
Speakers
avatar for SeongJae Park

SeongJae Park

Staff SW Engineer, Crusoe
SeongJae (SJ) Park is a Linux kernel programmer who maintains the data access monitoring framework of the Linux kernel called DAMON (https://damonitor.github.io/). His interests include operating system kernels, parallel computing, and memory management. He is working on Meta's kernel... Read More →
Wednesday October 7, 2026 14:25 - 15:05 CEST
Panorama Hall (Floor 1)
  Linux

14:25 CEST

Derivative Work and Modification(s): Where Copyright and Open Source Software Collide - Yet Again - Eleftheria Stefanaki, Nokia Technologies & Jimmy Ahlberg, Ericsson
Wednesday October 7, 2026 14:25 - 15:05 CEST
Talking points:

• Copyright law as a (wrong) playing field for open source software
• Working with what we have – the curious case of modifications
• Modification of software – what does this mean practically (e.g., bug fix, alteration of existing code, new code)
• Derivative work and modification in FOSS licensing
• Practical cases and “risks”
o Products
o M&As


Abstract:
There are many legal concepts that create havoc in the open source world, but only a few are as “scary” as the concept of modification and derivative work. Copyright law concept are challenging to adopt in the software context. The ambiguity of the legislation as well as the case law in many jurisdictions, such as the US and many EU countries and institutes, is proof enough that this is a convoluted topic, and not just in theory. The practical impact of derivative works and modifications runs through the entirety of the open source compliance process. In this session, we will attempt to demystify the aforementioned concepts and possibly open up more questions for discussion.
Speakers
avatar for Eleftheria Stefanaki

Eleftheria Stefanaki

FOSS Legal Counsel, Nokia Technologies
I am a lawyer from Greece, specialized in technology and passionate about open source. I have started my 'open source journey' in Ericsson, assisting and participating in the activities and day-to-day of the OSPO since 2022. Currently, I am the FOSS Legal Counsel for Nokia Technologies... Read More →
avatar for Jimmy Ahlberg

Jimmy Ahlberg

Expert & Senior Legal Counsel, Ericsson
Currently Mr Ahlberg is the Director of Open Source Policy with the Ericsson OSPO. Prior to the inception of the Ericsson OSPO he worked in different roles with various aspects of Open Source in the Ericsson organization, This included consumption of and contribution to Open Source... Read More →
Wednesday October 7, 2026 14:25 - 15:05 CEST
Terrace 2A (Floor 2)
  Open Source 101

14:25 CEST

Practical End-to-End Traceability for Zephyr’s Path To Safety Certification - Tobias Kästner & Andreas Kurz, inovex GmbH
Wednesday October 7, 2026 14:25 - 15:05 CEST
As part of the ongoing effort to achieve IEC 61508 certification, Zephyr's requirements capture process is underway. Yet there is still no clear picture of how these requirements trace to the tests that verify them or the code that implements them. Safety evidence is largely documented evidence, so the primary concern is generating auditable documents: requirement and test specifications, test reports, and traceability matrices.
The challenge is collecting this evidence in a community-compatible way — low-friction processes and tooling that developers and maintainers will accept.

This talk proposes a pipeline built on Zephyr's existing documentation tools (Doxygen/Sphinx) to extract the needed information from annotated source and tests, then trace it back against requirements into an end-to-end chain.
Two demos are shown: a minimal working example against Zephyr itself, and a self-contained pipeline for a Zephyr module the authors maintain. Required process adaptations and guidelines are explained. The work is an open proposal for discussion; once agreed, it gives the community a scalable foundation to advance safety efforts, with concrete tasks contributors can pick up.
Speakers
avatar for Tobias Kästner

Tobias Kästner

Safety Architect, Zephyr Project, inovex GmbH
A physicist by training, Tobias Kaestner has long been fascinated by where the physical and digital worlds meet. He began as a software team lead in a medical device start-up and has since spent 15+ years in the industry. As a solution architect for Medical IoT at inovex GmbH he helps... Read More →
avatar for Andreas Kurz

Andreas Kurz

Senior Embedded Software Engineer, inovex GmbH
Senior Embedded Software Engineer doing safety critical software for e.g., medical.
Wednesday October 7, 2026 14:25 - 15:05 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

14:45 CEST

Strategic Approach To Demonstrating the Value of OSS Efforts - Dawn Foster, Fast Wonder
Wednesday October 7, 2026 14:45 - 15:05 CEST
We’ve probably all had leadership question the value of our OSS efforts. It can be difficult to frame the value in ways that resonate with stakeholders and clearly articulate the benefits gained through continued OSS contributions. Taking a strategic approach that connects the OSS work with the broader goals and objectives of the organization can demonstrate the value of this work so that the organization can continue to allocate resources to the OSPO or other OSS teams.

Using examples from my decades of experience in OSS, this talk will provide details about how to demonstrate value by focusing on how your OSS work helps the organization achieve their strategies and goals. Every organization has unique needs and goals based on what they are trying to achieve, so there is no “one size fits all” way of demonstrating value, but aligning your OSS strategy with your organization’s goals and focusing on the most strategic projects can help show the value of your efforts. This talk will help you reason about how OSS efforts allow your organization to achieve its goals along with framing and communicating that value in ways that resonate with leadership, funders, and stakeholders.
Speakers
avatar for Dawn Foster

Dawn Foster

Open Source Strategy Consultant, Fast Wonder
Dr. Dawn Foster is an OSS strategy consultant. She is also on the board of CHAOSS, OpenUK, and the Software Stewardship Lab. She was previously a co-chair of the CNCF Contributor Strategy TAG. She has 20+ years of experience at companies like VMware and Intel with expertise in strategy... Read More →
Wednesday October 7, 2026 14:45 - 15:05 CEST
Conference Hall (Floor 4)

15:35 CEST

Embracing Service-Oriented Connectivity Across OpenStack and Kubernetes - Mitsuhiro Tanino & Rei Shimizu, LY Corporation
Wednesday October 7, 2026 15:35 - 16:15 CEST
Modern infrastructure platforms increasingly combine OpenStack VMs, Kubernetes Pods, managed platforms, and external services, yet connectivity models often remain fragmented across runtime boundaries and tied to infrastructure-specific constructs such as IP-based ACLs.

This session presents how LY Corporation introduced a service-oriented connectivity model across OpenStack and Kubernetes environments. Rather than extending Kubernetes-native service mesh concepts to VM workloads, we introduced a runtime-independent service abstraction where connectivity and policy are defined consistently across VMs, Pods, PaaS instances, and external resources.

Under this model, services become the primary unit for service discovery, authentication and authorization, ACL management, and traffic control, independent of the underlying runtime or network topology. A sidecar proxy enforces service-to-service policy consistently across both OpenStack-managed VMs and Kubernetes workloads.

We cover the architectural design, OpenStack and Kubernetes integration for service registration and identity propagation, and lessons from migrating production workloads at scale.
Speakers
avatar for Mitsuhiro Tanino

Mitsuhiro Tanino

Senior Software Engineer, LY Corporation
Mitsuhiro Tanino is a senior software engineer who has been working for LY Corporation since 2019. He has experience to contribute OpenStack Cinder project for several years and also contributed Kubernetes sig-storage for several years. His current working area is operating hyper-scale... Read More →
avatar for Rei Shimizu

Rei Shimizu

Senior Software Engineer, LY Corporation
Rei Shimizu is working as Software Engineer for Private Cloud in LY Corporation.
Wednesday October 7, 2026 15:35 - 16:15 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

15:35 CEST

OP-TEE Footguns: Lessons From the Integration Trenches - Richard Weinberger, sigma star gmbh
Wednesday October 7, 2026 15:35 - 16:15 CEST
OP-TEE is a widely adopted Trusted Execution Environment (TEE) commonly used on ARM-based SoCs. While it is highly portable and often features strong vendor support, achieving a functionally working setup is only half the battle. There are surprisingly many pitfalls where a developer can successfully integrate OP-TEE, only to introduce subtle security misconfigurations that silently undermine the entire system's threat model.

In this talk, Richard will outline the hidden security traps and integration challenges he has encountered over the past few years on custom hardware. Attendees will learn which footguns to watch out for, ultimately saving them the countless hours Richard spent debugging these exact issues.
Speakers
avatar for Richard Weinberger

Richard Weinberger

CTO, sigma star gmbh
Richard Weinberger is co-founder of sigma star gmbh where he offers consulting services around Linux and IT security. Upstream he maintains various subsystems of the Linux kernel such as UserModeLinux and UBIFS. Beside of low level and security aspects of computers he enjoys growing... Read More →
Wednesday October 7, 2026 15:35 - 16:15 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

16:30 CEST

Demystifying Board Farms: Build a Mini Desktop Board Farm With Standard Tools and Hardware - Francesco Cervigni, Neoncomputing
Wednesday October 7, 2026 16:30 - 16:50 CEST
Large companies have built board farms for decades, providing both solid automated QA capabilities and short developer feedback loops.
LAVA and Labgrid have emerged as standard tools.

Although, today most small companies have not adopted those tools and practices, and too many developers spend time, constantly, on hardware set-up.
Either standard tools are unknown, or two myths circulate: that LAVA is just for large-scale scenarios, and Labgrid is complex to set up.
While at this, many create, instead, new in-house tools (wheel reinvention).

This talk aims to reverse this, by showing two portable mini board farms: one using LAVA, and one using Labgrid.
These two examples will act as comparison and demystification of these standard open-source tools, while showing common concepts.
Both examples share a common open-source CI/CD (GitLab), and the physical layout: a portable 10-inch rack, which can sit on a desk (introduced only in recent years).
Network, serial, power and cable management is done assembling off-the-shelf hardware.

Board farm adoption, at any scale, can help teams to increase ergonomics, comfort, and determinism, for stress-free development, CI, and test workflows.
Speakers
avatar for Francesco Cervigni

Francesco Cervigni

Independent Embedded CI/CD & Test Automation Specialist, Neoncomputing
Francesco Cervigni is an embedded software consultant with 14 years in Embedded Systems and Industrial IoT.
He helps companies from different sectors improve development experience focusing on reproducible build systems, CI/CD, automated testing on emulated and real hardware, met... Read More →
Wednesday October 7, 2026 16:30 - 16:50 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

16:30 CEST

Challenges Using an IEC Standard in Open Source - Nico Rikken, Alliander
Wednesday October 7, 2026 16:30 - 16:50 CEST
The electrical energy sector can largely be defined by the IEC standards that ensure compatibility and conformity. In this way IEC standards serve our industry very well, both in the physical and digital realm. Although the open source projects and IEC share a similar goal of compatibility and innovation, in practice they conflict with one another. This has to do with the way in which IEC standards are created, licensed and distributed.

In this presentation Nico will share his experiences in dealing with IEC licenses from the perspective of an OSPO supporting open source development. This will highlight various issues, big and small, that hinder open source development. The presentation will also gather insights from the standards group in the LF Energy community group. By presenting this constructive assessment Nico hopes to foster discussion and encourage improvement of the situation. Much of the content will carry over to other closed standards.
Speakers
avatar for Nico Rikken

Nico Rikken

Solution Architect, OSPO member, Alliander
Nico Rikken has a track record in maximizing the potential of Free and Open Source Software in the energy sector and in the Netherlands. As Open Source Ambassador at grid operator Alliander he helps make open source project participation successful and ensure control over the company... Read More →
Wednesday October 7, 2026 16:30 - 16:50 CEST
Chamber Hall (Floor 3)

16:30 CEST

Life Finds a Way , Sandboxed Agents, Observable Verdicts - Henrik Rexed, Dynatrace
Wednesday October 7, 2026 16:30 - 17:10 CEST
"Life, uh, finds a way." So do AI agents. Give one a tool, and a prompt-injected README will teach it to spawn a shell. CVE-2025-59528 (CVSS 10.0) and Google's Antigravity sandbox escape proved the same thing twice in 2025: the agent didn't break the sandbox , either the sandbox was missing, or the electric fence was in the wrong place.
This talk is a tour of Jurassic Park, rebuilt on Kubernetes. The paddock walls are containers. The electric fence is kubernetes-sigs/agent-sandbox, swapping gVisor for Kata Containers under the same CRD. The control room is OpenTelemetry where invoke_agent, execute_tool, and tool.policy_check spans turn every isolation verdict into queryable telemetry.
We will deploy OpenClaw ,an open-source AI agent gateway inside a Sandbox resource on Cluster API, watch the agent attempt three different escapes, and ship policy decisions as first-class spans. Help shape OpenTelemetry semconv #3583 before the park opens.
Speakers
avatar for Henrik Rexed

Henrik Rexed

Cloud Native Advocate, Dynatrace
Henrik is a Cloud Native Advocate at Dynatrace, the leading Observability platform. Prior to Dynatrace, Henrik has worked more than 15 years, as Performance Engineer. Henrik Rexed Is Also one of the Organizer of the conferences named WOPR, KCD Austria and the owner of the Youtube... Read More →
Wednesday October 7, 2026 16:30 - 17:10 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

16:30 CEST

Securing Embedded Linux Buildsystems Against Supply Chain Attacks - Alejandro Enedino Hernandez Samaniego, Microsoft Corporation
Wednesday October 7, 2026 16:30 - 17:10 CEST
Embedded Linux build systems such as The Yocto Project and Buildroot rely on reused build artifacts and external inputs, while these represent an improvement in build time for subsequent builds, also create opportunities for supply chain attacks that are difficult to detect.

This talk demonstrates practical attack vectors, showing how intermediate object files produced by make in Buildroot can be modified during the build to introduce malicious behavior without changing source code, and also demonstrate its possible to poison Yocto Project shared state (sstate) cache artifacts to propagate compromised binaries.
These attacks are validated end-to-end by executing poisoned binaries in the final Linux image under QEMU.

I will then present mitigation strategies, focusing on signing and verification of the sstate artifacts and improved control over build inputs. The discussion covers integration approaches and tradeoffs between security, performance, and developer workflows.

Attendees will gain practical insight into real-world risks when creating customized Linux distributions and concrete steps to improve their build system's security.
Speakers
avatar for Alejandro Enedino Hernandez Samaniego

Alejandro Enedino Hernandez Samaniego

Principal Software Engineer, Microsoft Corporation
Alejandro is an Principal Software Engineer at Microsoft, he works as a Yocto Project developer in the Linux Systems Group, designing software to improve system's developers experience when building customized embedded Linux distributions and applications, currently maintains the... Read More →
Wednesday October 7, 2026 16:30 - 17:10 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

16:50 CEST

Cukinia: A Lightweight Test Framework for Embedded Linux Systems - Kévin L'hôpital, Savoir-Faire Linux
Wednesday October 7, 2026 16:50 - 17:10 CEST
Embedded Linux projects already have powerful testing frameworks, but they often come with requirements about infrastructure, dependencies, or target environments. In many firmware projects, developers need something simpler: a lightweight way to run system-level validation directly on the device, with minimal setup and no additional runtime requirements.

Cukinia is an open-source test framework designed to make embedded Linux validation simple and accessible. Requiring only a POSIX shell, Cukinia can run directly on target devices even in production and integrates quickly into existing CI/CD workflows. With a collection of predefined test statements, developers can quickly create tests for system configuration, hardware interfaces, services, networking, storage, and more.
Speakers
avatar for kévin L'hôpital

kévin L'hôpital

Embedded engineer, Savoir-faire Linux
Kevin is an embedded engineer working in Savoir-faire Linux in Rennes. He is mainly working on creating Yocto based distribution, kernel debugging, secure-boot implementation and creating media applications. He is the main contributor of the GEISA conformance test application.
Wednesday October 7, 2026 16:50 - 17:10 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

16:50 CEST

AI Everywhere, Trust Nowhere: Navigating Open Source Security, "AI Slop," and the New Attack Surface - Adrianne Marcum, Linux Foundation & Christopher Robinson, OpenSSF
Wednesday October 7, 2026 16:50 - 17:10 CEST
Artificial Intelligence is fundamentally changing the open-source ecosystem, promising unparalleled development velocity. However, this speed scales risk simultaneously. Open-source software (OSS) maintainers—already heavily resource-constrained and unevenly funded—are finding themselves caught in a crossfire of AI-driven complications.

This session, led by the Open Source Security Foundation (OpenSSF), breaks down the three critical security paradigm shifts introduced by AI:

Securely Using AI to Build Software: How insecure-by-default code suggestions, copied risks, and hallucinated packages compromise codebase integrity.

Using AI to Secure Software: The reality of how upstream maintainers are overwhelmed by a massive influx of automated vulnerability reports generated by AI bug hunters.
AI as an Attack Surface: Moving past traditional DevSecOps to address MLSecOps pipeline vulnerabilities, including data poisoning, model theft, and container security across the machine learning lifecycle.

Attendees will walk away with an understanding of OpenSSF’s recommended approach designed to shift the focus from cheap "findings" to valuable, validated "fixes".
Speakers
avatar for Christopher

Christopher "CRob" Robinson

Security Lorax, Openssf
Christopher Robinson (aka CRob) is the Chief Security Architect for the Open Source Security Foundation. With over 25 years of Enterprise-class engineering, architectural, operational and leadership experience, CRob has worked at several Fortune 500 companies with experience in the... Read More →
avatar for Adrianne Marcum

Adrianne Marcum

OpenSSF Chief of Staff, Linux Foundation
Adrianne Marcum brings extensive experience in engineering, product, project, and program management to her role as Chief of Staff at OpenSSF. With a career that began in mechanical engineering, she has since worked across a multitude of industries, including defense, heavy machinery... Read More →
Wednesday October 7, 2026 16:50 - 17:10 CEST
Conference Hall (Floor 4)

17:25 CEST

Teaching BIND9 New Tricks: A Rust Operator for Declarative DNS on Kubernetes - Erick Bourgeois, RBC Capital Markets
Wednesday October 7, 2026 17:25 - 18:05 CEST
Authoritative DNS is one of the last holdouts against declarative, GitOps-style management. BIND9 still serves a huge share of the world's zone data, but it's driven imperatively: hand-edited zone files, rndc reload, and brittle automation glued on top. bindy is an open-source Kubernetes operator, written in Rust on kube-rs, that closes the gap. It models zones and records as custom resources and continuously reconciles a running BIND9 against them, leaving no orphaned zone file behind.
This talk walks through the architecture of bindy and its sibling projects, bindcar, a sidecar that exposes RNDC operations over a typed API, and hornet, a Rust zone-file parser, then digs into the operator-engineering lessons that transfer to anyone writing controllers in Rust. We'll cover splitting selection from synchronization to avoid reconcile loops, using the reflector and store, modeling ownership and status conditions, and where Rust and kube-rs paid off versus Go's controller-runtime.
Attendees leave with a concrete, reusable pattern for wrapping any stateful, non-cloud-native daemon in a declarative Kubernetes API, and three open-source projects they can adopt, fork, or contribute to.
Speakers
avatar for Erick Bourgeois

Erick Bourgeois

Head of Kubernetes Platform Engineering, Director, RBC Capital Markets
Erick Bourgeois is a platform engineering specialist focused on Kubernetes operators and infrastructure automation for regulated industries. Creator of Bindy, an open-source DNS controller built in Rust, Erick brings expertise in cloud-native architecture, compliance frameworks (SOX... Read More →
Wednesday October 7, 2026 17:25 - 18:05 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

17:25 CEST

Labgrid & Board Farming BOF - Rouven Czerwinski, Linaro
Wednesday October 7, 2026 17:25 - 18:05 CEST
Labgrid is a tool for both board farming and embedded systems testing. This session will include an overview of current developments and also provides a gathering for people interested or already using Labgrid.
Speakers
avatar for Rouven Czerwinski

Rouven Czerwinski

Software Engineer, Linaro
At first building the labgrid hardware access layer, rouven nowadays works on security and multimedia solutions for embedded devices.
Wednesday October 7, 2026 17:25 - 18:05 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

17:25 CEST

Secure by Default: Building Locked-Down Embedded Linux Devices With Systemd - Mohammad Abdoli, Segula Technologies
Wednesday October 7, 2026 17:25 - 18:05 CEST
Modern embedded Linux devices must balance security, maintainability, and operational flexibility. While the Linux kernel provides powerful security primitives such as namespaces, cgroups, eBPF, and dm-verity, integrating them consistently across products remains a challenge.

This session explores how systemd has evolved beyond a traditional init system into a security and lifecycle management framework for embedded Linux platforms.

Using practical examples, we will examine how systemd Portable Services enable immutable application deployment, how dm-verity protects software integrity from storage to execution, how systemd leverages eBPF for kernel-enforced sandboxing and policy enforcement, and how cgroup-based resource management can contain both faults and attacks.

Attendees will learn how these mechanisms interact, how they can be integrated into Yocto-based systems, and how systemd can act as the orchestration layer between applications and modern Linux kernel security features.

Rather than presenting isolated hardening techniques, this session introduces a practical architecture for designing maintainable, resilient, and secure-by-default embedded Linux products.
Speakers
avatar for Mohammad Abdoli

Mohammad Abdoli

Senior Embedded systems consultant, Segula technologies
Mohammad Abdoli (mominux) is an Embedded Systems Engineer specializing in the safety and security of embedded platforms, Linux system architecture, and open-source technologies. His interests include Linux security, systemd, virtualization, and secure-by-design embedded systems.
Wednesday October 7, 2026 17:25 - 18:05 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

17:25 CEST

ZBus for Linux - Peter Fecher, PHYTEC Messtechnik GmbH
Wednesday October 7, 2026 17:25 - 18:05 CEST
ZBus (Zephyr Bus) is a thread-to-thread message and data exchange protocol based on a bus topology. Since Zephyr v4.4.0, it also supports IPC between multiple Zephyr domains running on different CPU cores.

While this fits well for homogeneous multicore systems, heterogeneous SoCs typically run different operating systems on different cores. A common ARM-based setup uses Linux on a Cortex-A core for high-level tasks and Zephyr on a Cortex-M core for real-time workloads.

Communication between these environments requires data exchange across both cores and operating systems. Currently, the practical approach is to transfer raw bytes through RPMsg channels, requiring developers to implement custom protocols on both sides.

ZBus for Linux bridges this gap by connecting Linux applications to a remote ZBus instance, enabling structured communication across heterogeneous systems.

This talk presents the implementation of an early prototype, the challenges encountered, and the overall architecture of ZBus for Linux.
Speakers
avatar for Peter Fecher

Peter Fecher

Embedded Engineer, PHYTEC Messtechnik GmbH
Peter Fecher just finished his bachelors degree in Computer Engineering. He has been working at PHYTEC for 3 years now, specialising on microcontrollers and IoT systems.
Wednesday October 7, 2026 17:25 - 18:05 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

17:25 CEST

Nine Seconds To Production: Security Governance for AI Agents - Jasdeep Singh Bhalla, GoDaddy
Wednesday October 7, 2026 17:25 - 18:05 CEST
On April 24, 2026, an AI coding agent deleted a company's entire production database in nine seconds. Every customer record, every reservation, and every backup vanished. The system prompt explicitly told the agent never to execute destructive commands. It did it anyway.

It was a chain of architectural failures: an agent improvising instead of stopping, overprivileged credentials, no human approval for high-risk actions, and backups inside the same blast radius.

This session recreates the incident and rebuilds the security architecture live. You'll see how OPA enforces policy before tools execute, Falco detects suspicious runtime behavior, and OpenTelemetry captures structured reasoning traces for compliance-grade audit logs.

We'll implement six defensive layers: pre-execution policy enforcement, runtime behavioral monitoring, structured audit logging, least-privilege execution roles, infrastructure deletion protection, and recovery systems isolated outside the agent trust boundary.

Prompts are guidance. Infrastructure is enforcement. You'll leave with a vendor-neutral security architecture for deploying AI agents safely across any framework or LLM provider.
Speakers
avatar for Jasdeep Singh Bhalla

Jasdeep Singh Bhalla

Senior Software Engineer, GoDaddy
Jasdeep Singh Bhalla is a Senior Software Engineer at GoDaddy, specializing in AI security governance, cloud native infrastructure, and distributed systems. With over a decade of experience across GoDaddy, Electronic Arts, Dialpad, and Yahoo, he has architected production platforms... Read More →
Wednesday October 7, 2026 17:25 - 18:05 CEST
Forum Hall (Floor 2)
  Open AI & Data

17:25 CEST

Where Zephyr Fits in Space Computer Architecture - Yasushi Shoji, Space Cubics Inc.
Wednesday October 7, 2026 17:25 - 18:05 CEST
Using Zephyr in space is not only a question of choosing an RTOS. A space computer is a system architecture: boot firmware, supervisor logic, watchdogs, safe mode, recovery paths, update policy, hardware monitoring, FPGA or SoC configuration, and the boundary between platform software and mission-specific applications all matter.

This talk looks at Zephyr from that system-architecture point of view. Based on Space Cubics’ OBC development experience and recent Space Grade Linux discussions, it explores where Zephyr can fit in future space systems: mission RTOS, payload-controller OS, supervisor/control-plane OS, or companion to Linux. Space already has credible RTOS options, but Zephyr can bring value if the ecosystem develops a clear architectural story around boot, recovery, observability, hardware control, and responsibility boundaries.

Attendees will leave with a practical checklist for evaluating Zephyr’s role in a space computer: what Zephyr should control, what should remain outside it, what must be recoverable after launch, and how to structure boot, update, monitoring, isolation, and fault-handling responsibilities.
Speakers
avatar for Yasushi SHOJI

Yasushi SHOJI

Co-Founder and CEO, Space Cubics Inc.
Yasushi SHOJI is a Linux kernel and embedded systems developer with over 20 years of experience. Founder of Space Cubics, he develops spacecraft using Zephyr RTOS and contributes to open source projects for high-reliability systems.
Wednesday October 7, 2026 17:25 - 18:05 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

17:45 CEST

Open Quantum Safe: Post-Quantum Software Research in the Era of the First PQC Standards - Rodrigo Martín, Indra
Wednesday October 7, 2026 17:45 - 18:05 CEST
The Open Quantum Safe (OQS) project was founded with the mission of supporting the transition to Post-Quantum Cryptography. On its way, it became one of the most important open-source post-quantum cryptographic organizations. The subsequent publication and adoption of the first PQ standards by major cryptographic projects helps the cryptographic community in the adoption of this required type of cryptography. The mission of the OQS organization remains being at the forefront of PQC research. This talk provides an update of what these efforts look like in the era of the first PQ standards. It will include lessons learned along the way, challenges encountered when handling a PQ Open Source project and future directions, such as: 

1) Addition of new PQ schemes being considered for standardization or relevant to the PQ cryptographic community (e.g. NIST on-ramp signature schemes)

2) Inclusion of new functionalities like: new hybrids or constant-time analysis.
Speakers
avatar for Rodrigo Martín

Rodrigo Martín

Senior Cryptography Researcher, Indra
Rodrigo is a Senior Cryptography Researcher at Indra. He is also an Industrial PhD candidate, focused on the algebraic aspects of PQC, as well as PQC migrations. His work experience is the research, development and secure deployment of cryptography in real applications and protocols... Read More →
Wednesday October 7, 2026 17:45 - 18:05 CEST
Chamber Hall (Floor 3)
 
Thursday, October 8
 

09:05 CEST

Enabling Multi-Stream Camera Sensors in Linux: RGB+IR Streams and Embedded Metadata - Rishikesh Donadkar & Devarsh Thakkar, Texas Instruments
Thursday October 8, 2026 09:05 - 09:45 CEST
Camera sensors are evolving beyond single-stream models to generate multiple concurrent streams like RGB+IR video and embedded metadata alongside image data. Supporting these sensors in Linux introduces new challenges for the V4L2 and media controller subsystem, particularly around per-stream configuration and stream identification.

This talk presents two practical use cases for enabling multi-stream cameras in Linux. First, RGB+IR sensor support through V4L2 control framework extensions using array-based controls, enabling independent per-stream configuration while preserving a unified sensor model. Second, sensors transmitting embedded metadata, leveraging RAW sensor model proposed by Sakari Ailus, internal pads for metadata propagation, and data-type filtering in V4L2 bridge drivers to separate and route metadata and image streams.

Ref (lkml) : [PATCH v11 00/66] Generic line based metadata support, internal pads

These concepts are demonstrated through POC implementations on TI AM62A platform using OV2312 and IMX219 sensors, with integration into GStreamer and libcamera.

Attendees will gain practical insight into Linux multi-stream camera sensor implementation
Speakers
avatar for Rishikesh Donadkar

Rishikesh Donadkar

Senior Software Engineer, Texas Instruments
Rishikesh is a 2024 graduate from VJTI, Mumbia. He has been involved in open-source community from 1st year of his college. He has completed GSoC in the year 2024 with the organization libcamera. He has been quite active in the media community contributing mainly to Linux media s... Read More →
avatar for Devarsh Thakkar

Devarsh Thakkar

Linux Media Lead at Texas Instruments, Texas Instruments
Devarsh Thakkar works as an Embedded Linux developer at Texas Instruments. He has 13+ years of experience in software development ranging from open-source bootloaders to the Linux kernel, middleware frameworks and applications. His expertise lies in Audio/Video related multimedia... Read More →
Thursday October 8, 2026 09:05 - 09:45 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

09:05 CEST

Redesigning a Modern Linux Userspace: Lessons From Going Libc-Free - Manjeet Singh, IBM
Thursday October 8, 2026 09:05 - 09:45 CEST
Linux userspace is built on a long history of trusted pieces c, libc, shell scripts, BusyBox, coreutils, PAM, NSS, and many assumptions that most systems inherit by default. These pieces work, and they have solved real problems for decades. But they also carry complexity from a different time.

We explore a userspace with fewer moving parts, no traditional libc dependency, simple deployment, easy cross-compilation, readable system code, and fewer external runtime dependencies. The goal is not to replace everything just for the sake of being different. The goal is to understand what still needs to exist, what can be simplified, and what becomes harder when we stop relying on the usual stack.

By rebuilding familiar userspace components from the ground up, we learn which old assumptions are still valuable, which ones are accidental complexity, and where embedded or minimal Linux systems can become simpler without becoming fragile.

This is a practical report from trying to redesign Linux userspace instead of only replacing individual tools. It covers what worked, what broke, and what the experiment teaches us about building smaller, simpler, and more maintainable Linux systems today.
Speakers
avatar for Manjeet Singh

Manjeet Singh

Firmware Developer, IBM
Manjeet Singh is a Firmware Engineer at IBM working on the OpenBMC project. He is a Linux enthusiast and systems programmer interested in operating systems, Linux userspace, and low-level system design. He works on AvyOS, an experimental Linux-based operating system built as a side... Read More →
Thursday October 8, 2026 09:05 - 09:45 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

09:05 CEST

Taming the Safety Dragon With U-Boot and Linux - Neha Francis & Josiitaa RL & Santhosh Kumar K, Texas Instruments
Thursday October 8, 2026 09:05 - 09:45 CEST
U-Boot and Linux boot flows lack safety monitoring for mixed-criticality systems. We address this gap for low-criticality use cases and development stages where customers work toward safety certification on TI K3 SoCs, offering a flexible alternative to rigid safety-critical frameworks. This approach can be extended to any of the heterogeneous SoCs with safety hardware support.

We cover safety drivers in both U-Boot and Linux that increase the safety level of a system: Error Signaling Module (ESM) for error routing, Power-OK (POK) voltage monitors (upstreaming WIP), Voltage-Thermal Monitor (VTM), Timeout Gasket (TOG, upstreaming WIP), DDR Inline ECC for memory protection, and watchdog. In U-Boot, we leverage its sequential non-threaded flow to initialize ESM, POK, VTM, TOG, and DDR ECC via uclasses, establishing hardware safety guarantees before kernel handoff. In the kernel, we cover configuration and error handling of watchdog, and ECC for self-resets and synchronous aborts. DDR thermal self-refresh rate management and runtime monitoring of POK, VTM, and TOG via hwmon (WIP) will also be covered. Testing approaches via U-Boot cmdline tests and LTP-DDT will also be discussed.
Speakers
avatar for Neha Francis

Neha Francis

Embedded Software Engineer, Texas Instruments
Neha Malcom Francis is a Software Engineer working in Texas Instruments in the Linux Core Product Development Team for Jacinto Processors. Neha mainly works on U-Boot development along with assisting customer requirements.
avatar for Josiitaa RL

Josiitaa RL

Embedded Software Engineer, Texas Instruments
Josiitaa is a TÜV certified Functional Safety Engineer and Embedded Software Engineer at Texas Instruments. She works in the Jacinto Software Applications team, where she partners closely with automotive customers to address safety challenges on a day-to-day basis. She has resolved... Read More →
avatar for Santhosh Kumar K

Santhosh Kumar K

Embedded Linux Engineer, Texas Instruments
Santhosh Kumar K joined Texas Instruments in 2023 as an embedded Linux engineer working on TI Sitara platforms. His work focuses on SPI, MTD, and DDR subsystems across Linux and U-Boot development, with contributions to upstream, platform enablement, and performance optimization... Read More →
Thursday October 8, 2026 09:05 - 09:45 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

09:50 CEST

A/B Updates in a Secure Boot Environment - Michael Opdenacker, Root Commit
Thursday October 8, 2026 09:50 - 10:30 CEST
In a system with "secure boot", you want to lock down most aspects of the system, in particular the bootloader.

On the other hand, implementing A/B updates requires to keep a writable bootloader environment to implement several aspects of A/B updates: adapting the kernel command line to the active partition, counting boot attempts and implementing recovery after deploying a defective update. Without a careful implementation, this could open the door to altering the sequence of boot commands or to introducing unwanted kernel parameters, therefore breaking the security of the bootloader and the rest of the system.

Both secure boot and A/B updates techniques are well documented, but most often without considering their mutual requirements. In this presentation, I will share solutions I found and used in a recent project. I will also share implementation details with U-Boot and the Yocto Project.
Speakers
avatar for Michael Opdenacker

Michael Opdenacker

Linux Device Rider, Root Commit
Michael is an independent embedded Linux consultant and trainer, and former founder of Bootlin. His new company is Root Commit (https://rootcommit.com).

Michael is a contributor to the Linux kernel and to the Yocto Project (Yocto Project Ambassador since 2026).

Passionate about Free Software and knowledge sharing, he authored many presentations related to embedded Linux, the Linux Kernel and Free Software in general. He finds talking at conferences a great way to truly learn what he shares... Read More →
Thursday October 8, 2026 09:50 - 10:30 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

09:50 CEST

Balancing Power Efficiency and Real-Time Performance on Intel Embedded Platforms - Junxiao Chang, Intel
Thursday October 8, 2026 09:50 - 10:30 CEST
Achieving both low power consumption and deterministic real-time performance is a key challenge for modern embedded systems. Intel embedded platforms are widely deployed in industrial, medical, robotics, and other edge computing applications where strict timing requirements must be satisfied while maintaining energy efficiency. Traditional real-time system configurations often disable CPU frequency scaling and deep CPU idle states to minimize latency and jitter. While this approach can improve real-time responsiveness, it significantly increases power consumption and reduces battery life in power-constrained deployments.
This proposal presents practical techniques for balancing power management and real-time performance on Intel embedded platforms running Linux with the PREEMPT_RT kernel. Based on experimental evaluation, we demonstrate that modern Intel power management features can be selectively enabled and tuned to reduce energy consumption while maintaining deterministic real-time behavior. These findings offer practical guidance for deploying power-efficient real-time applications on Intel edge platforms.
Speakers
avatar for Junxiao Chang

Junxiao Chang

Balancing Power Efficiency and Real-Time Performance on Intel Embedded Platforms, Intel
Junxiao Chang has worked in Linux domain for more than 20 years. He has rich experience on Real time Linux and He loves Linux!
Thursday October 8, 2026 09:50 - 10:30 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

09:50 CEST

From TTEthernet To TSN on Zephyr: What Space Systems Teach Us About Deterministic Networking - Yasushi Shoji, Space Cubics Inc.
Thursday October 8, 2026 09:50 - 10:30 CEST
Many spacecraft avionics and payload systems are already distributed embedded systems: onboard computers, payload controllers, sensors, and links must coordinate under strict reliability constraints. Aerospace has long used controlled onboard networks, from MIL-STD-1553 to Ethernet-based approaches such as TTEthernet. The next question is how open standards such as IEEE Time-Sensitive Networking (TSN) can work in open RTOS ecosystems such as Zephyr.

Based on my experience with TTEthernet, Zephyr, micro-ROS, and space OBC development, this talk asks what TSN on Zephyr should become. TSN is not one feature: traffic shaping, scheduled transmission, redundancy, policing, configuration, time synchronization, and hardware support all matter. Linux already has a mature TSN operations model around user-space tools such as tc and linuxptp. Zephyr has no Linux-style userland, so TSN needs Zephyr-native APIs, shell commands, samples, diagnostics, and management interfaces.

Attendees will learn why TSN matters for Zephyr, why Zephyr cannot simply copy Linux tooling, and what design questions remain for TSN-capable endpoints.
Speakers
avatar for Yasushi SHOJI

Yasushi SHOJI

Co-Founder and CEO, Space Cubics Inc.
Yasushi SHOJI is a Linux kernel and embedded systems developer with over 20 years of experience. Founder of Space Cubics, he develops spacecraft using Zephyr RTOS and contributes to open source projects for high-reliability systems.
Thursday October 8, 2026 09:50 - 10:30 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

10:50 CEST

Evolving Video4Linux2 To Support Modern Camera Use Cases - Jacopo Mondi, Ideas On Board
Thursday October 8, 2026 10:50 - 11:30 CEST
Modern camera use cases are realized by complex pipelines of several IPs blocks that process frames produced by an image sensor to deliver great looking images to applications.

Support for the most advanced use cases is implemented by time-multiplexing the underlying hardware resources, performing job scheduling at the hardware/firmware level and orchestrating the image processing steps across multiple drivers and IPs.

The Video4Linux2 kernel subsystem currently doesn't provide any abstraction for drivers and applications to fully support modern designs and vendors that intend to make use of the capabilities of their hardware had so far worked around this
limitations by implementing downstream solutions.

This talk describes the most recent and the forthcoming developments in the Video4Linux2 kernel framework to support modern camera use cases, including but not limited to multi-driver pipelines, multi-context time multiplexing of hardware resources and job scheduling, with practical examples from the field on recent SoC designs.
Speakers
avatar for Jacopo Mondi

Jacopo Mondi

Linux camera specialist, Ideas On Board
Jacopo is an embedded Linux engineer with 10 years of experience in the field of camera and multimedia systems.

With the Ideas On Board team he's trying hard to "make cameras work on every platform" with mainline Linux and libcamera
Thursday October 8, 2026 10:50 - 11:30 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

10:50 CEST

No Reboot Required: Over-the-Air Updates for Immutable Filesystems - Jana Perić, Northern.tech
Thursday October 8, 2026 10:50 - 11:30 CEST
Designing immutable filesystems is becoming the default for embedded Linux development: they're more secure, easier to reason about, and resilient to field drift. But they make a once-easy thing surprisingly awkward: a one-line fix to a single script means shipping a whole new rootfs and rebooting the device.
systemd-sysext addresses half this problem by merging extension images onto /usr/ at runtime, with integrity enforced via dm-verity. But sysext is the activation mechanism only — it says nothing about how those signed images reach a fleet of devices in the first place.
This talk walks through a working proof-of-concept that closes the gap: a verity-signed sysext image, delivered over the air through a standard OTA framework, merged live onto a read-only Ubuntu rootfs, with health checks and automatic rollback on failure — all without a single reboot.
This talk covers the architecture end to end, the non-obvious operational gotchas, and an honest accounting of what this approach does and doesn't replace.
Speakers
avatar for Jana Peric

Jana Peric

Embedded Linux Engineer, Northern.tech
Jana is an Embedded Linux Engineer at Northern.tech, where she helps developers succeed (and occasionally survive) with Mender. Having shipped firmware updates into the wild, she has seen everything from flawless rollouts to devices that went mysteriously silent mid-update. She secretly... Read More →
Thursday October 8, 2026 10:50 - 11:30 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

10:50 CEST

When the Kernel Writes Its Own Code: Debugging Runtime-Generated Instructions - Alexis Lothoré, Bootlin
Thursday October 8, 2026 10:50 - 11:30 CEST
While most instructions the Linux kernel executes come from a standard compiler like GCC or Clang, the kernel can also patch itself at runtime: ftrace, kprobes, eBPF programs... Debugging these runtime-generated instructions is a whole new challenge, as we lack the usual debug data: symbol names, offsets, debug info. Fortunately, we can adapt our tooling to observe them.

This talk explores practical debugging techniques for runtime-generated instructions, using eBPF as a concrete example: when a user loads an eBPF program, the kernel's JIT compiler emits native machine code. After a brief eBPF introduction, we will debug these programs and the surrounding generated code (trampolines, dynamic instrumentation, verifier patches...). Starting from standard debug information in bare binaries or exposed at runtime, we will gradually build up our toolkit: running a custom kernel under QEMU, taking control with GDB, debugging userspace and kernel space together, adding TUI and GDB scripts, and finally stepping through raw machine instructions. Aimed at developers familiar with C/kernel
development, attendees will gain hands-on techniques and confidence for any kind of low-level analysis.
Speakers
avatar for Alexis Lothoré

Alexis Lothoré

Embedded Linux engineer and trainer, Bootlin
Alexis is an embedded Linux developer and trainer with 10 years of experience, currently working at Bootlin. He has made several contributions to the Linux kernel, specifically around networking: support and improvement for ethernet switches and wireless chips, as well as improvements... Read More →
Thursday October 8, 2026 10:50 - 11:30 CEST
Panorama Hall (Floor 1)
  Linux

10:50 CEST

Just Keep Swimming: Benchmarking OSS Agent Memory on Kubernetes With OpenTelemetry - Henrik Rexed, Dynatrace
Thursday October 8, 2026 10:50 - 11:30 CEST
Your AI agent is Dory. Every conversation it wakes up unable to remember a thing , so you, Marlin, re-explain everything every turn. Four open-source memory systems promise to fix that: Cognee, MemOS, Honcho, and MemPalace. But which architecture actually pays off in tokens, dollars, and resolved tasks?
This talk runs two experiments. First, we benchmark all four backends head-to-head on a single Kubernetes substrate , same harness, same workloads, same OpenTelemetry Collector and rank them by token efficiency, cost per resolved task, and recall under contradiction.
Then we test the question most teams haven't asked: is running an agent with memory worth it at all? We measure two real OSS agent frameworks , kagent (CNCF Sandbox) and sympozium with their built-in memory turned on, then turned off. Real workloads, real numbers.
None of the four backends ships first-party OTel today; the Helm chart, OTel pipeline, and upstream PRs are how we close that gap for the ecosystem.
Speakers
avatar for Henrik Rexed

Henrik Rexed

Cloud Native Advocate, Dynatrace
Henrik is a Cloud Native Advocate at Dynatrace, the leading Observability platform. Prior to Dynatrace, Henrik has worked more than 15 years, as Performance Engineer. Henrik Rexed Is Also one of the Organizer of the conferences named WOPR, KCD Austria and the owner of the Youtube... Read More →
Thursday October 8, 2026 10:50 - 11:30 CEST
Forum Hall (Floor 2)
  Open AI & Data

10:50 CEST

Panel: OpenChain 2.0: Open Source Compliance in the Age of Automotive SBOM, Generative AI, and the CRA - Masato Endo, Toyota Motor Corporation; Marcel Kurzmann, Robert Bosch GmbH; Meixia Wang, LF; Jimmy Ahlberg, Ericsson; Ayumi Watanabe, Hitachi
Thursday October 8, 2026 10:50 - 11:30 CEST
Ten years ago, the OpenChain Project launched at this very event. A decade on, it has built the global baseline for open source compliance, culminating in ISO/IEC 5230 — the "1.0" era. With Mary Meixia Wang as Executive Director, OpenChain now enters its next chapter, and this panel asks what "2.0" must deliver.

Two frontiers define the road ahead. First, Automotive SBOM: as vehicles become software-defined, the deepest supply chain anywhere needs SBOM practices scaling from silicon to OEM. Second, license compliance in the era of generative

AI and "vibe coding": as more code is generated by AI than written by hand, licensing of models, training data, and AI-produced code raises questions traditional compliance never anticipated. Regulation such as the EU CRA adds urgency, making machine-readable SBOMs effectively mandatory and reinforcing the trust and security OpenChain pursues.

The panel goes beyond discussion: it first shares the community's latest work on these challenges — from the Automotive SBOM Guideline to evolving thinking on compliance for AI-generated code — then opens a cross-industry conversation on what the shift from 1.0 to 2.0 must deliver in practice.
Speakers
avatar for Masato Endo

Masato Endo

Manager of TOYOTA OSPO, Toyota Motor Corporation
Masato Endo is a Group Manager of TOYOTA. He focuses also on building the Open Source governance structure within Toyota and developing relationships with the Open Source community, through projects such as AGL and OIN. From 2017, he began to work with the OpenChain Project as a board... Read More →
avatar for Marcel Kurzmann

Marcel Kurzmann

Software and Open Source Management Consultant, Robert Bosch GmbH
Marcel Kurzmann joined Bosch in 1997. After working at Bosch Engineering , Automotive Electronics and Bosch Software Innovations in different roles, he is now member of the Center of Excellence Open Source and Inner Source at Bosch Digital. He represents Bosch in the OpenChain Governing... Read More →
avatar for Meixia Wang

Meixia Wang

Executive Director, The Linux Foundation
Mary Wang is the Executive Director of the OpenChain Foundation, part of the Linux Foundation.

Prior to this role, she served as Director of the Open Source Ecosystem at Volvo Cars, where she founded and led the company’s Open Source Program Office (OSPO).
Mary also spent nine years at Ericsson. During that time, she worked as a DevOps engineer, developing and implementing CI/CD pipelines, and later as a Technical Product Manager (TPM), taking end-to-end ownership of products... Read More →
avatar for Jimmy Ahlberg

Jimmy Ahlberg

Expert & Senior Legal Counsel, Ericsson
Currently Mr Ahlberg is the Director of Open Source Policy with the Ericsson OSPO. Prior to the inception of the Ericsson OSPO he worked in different roles with various aspects of Open Source in the Ericsson organization, This included consumption of and contribution to Open Source... Read More →
avatar for Ayumi Watanabe

Ayumi Watanabe

Senior OSS Specialist of Hitachi Solutions, Ltd., Hitachi Solutions, Ltd.
Ayumi Watanabe is a core member of OpenChain Japan community and known as an evangelist who is certified by the Linux Foundation Japan. Her strong point is a knowledge of many tools for SBOM generation and management, a wide range of experiences as an OSS management consultant, and... Read More →
Thursday October 8, 2026 10:50 - 11:30 CEST
South Hall 1 A (Floor 1)

10:50 CEST

Technical Writing in the Age of AI - Jiri Herrmann & Vendula Ferschmannova, Red Hat Czech
Thursday October 8, 2026 10:50 - 11:30 CEST
With the advent of large language models, looking up human-made software documentation might seem like an antiquated and inefficient way of getting information. On top of that, Claude Code and similar tools can now crunch information straight from your JIRAs and conjure new pull requests at speeds that cannot be matched by even the most veteran documentation maker.

So where does this leave you as a technical writer?

Let us come together as professional technical communicators to grumble and bellyache, but mainly to share tips and insights on how to make the best of the paradigm shifts and upheavals that AI advancements now introduce to our work-life on a regular basis.
Speakers
avatar for Jiri Herrmann

Jiri Herrmann

Principal Technical Writer, Red Hat Czech
A long-time technical writer at Red Hat, a language enthusiast, and a fan of all sorts of nerdy things.
avatar for Vendula Ferschmannova

Vendula Ferschmannova

Senior Manager, Customer Content Services, Red Hat Czech
Technical communication professional passionate about minimalism, structure, and technical writing in general.
My other area of interest is Usability in technical documentation and helping writers with their career.
Thursday October 8, 2026 10:50 - 11:30 CEST
Club H (Floor 1)

10:50 CEST

Verifying ABI Compatibility Across Releases and CPU Architectures - Adarsh Jagadish Kamini & Daniel Turull, Ericsson Software Technology
Thursday October 8, 2026 10:50 - 11:30 CEST
Package updates across multiple architectures and long-term release branches complicate pipeline testing. Source-level tests usually pass during a package upgrade, missing Application Binary Interface (ABI) changes that later break downstream images and containers at runtime.

This talk introduces an extension to meta-binary-audit [1] that adds automated binary analysis to release CI pipelines for Yocto environments. Integrating libabigail into the pipeline reports exactly what changed in the binary interface before code is released.

The session details the CI architecture, parallel binary audits across multiple architectures, and how to track symbol-level ABI changes during LTS uplifts, using the migration from Scarthgap to Wrynose as an example. Attendees will leave with practical methods to analyze these interface changes, evaluate compatibility across releases, and prevent broken downstream images.

[1] https://github.com/Nordix/meta-binaryaudit/
Speakers
avatar for Daniel Turull

Daniel Turull

Senior Specialist in Operating Systems, Ericsson
Daniel is a senior specialist at Ericsson. Currently, he focuses on embedded Linux with Yocto, working on both internal and commercial distributions. He works on the Ericsson Linux distribution team, productifying Yocto and ensuring supply chain security to safeguard critical inf... Read More →
avatar for Adarsh Jagadish Kamini

Adarsh Jagadish Kamini

Linux Support Engineer, Ericsson Software Technology AB
Adarsh currently works as a Linux Support Engineer at Ericsson Software Technology in Stockholm. He has a broad background in engineering spanning embedded systems, connectivity, and robotics. However, he is most passionate about build systems, integrating devices and real-time systems... Read More →
Thursday October 8, 2026 10:50 - 11:30 CEST
Club E (Floor 1)

10:50 CEST

Zephyr Network Buffers - Johan Hedberg, Silicon Labs
Thursday October 8, 2026 10:50 - 11:30 CEST
Zephyr has had its own abstraction for network buffers ever since the creation of its Bluetooth and Networking stacks that were part of the project's public launch back in 2016. The presenter is the original author of the buffer implementation and still acts as maintainer for it. The presentation will go through the original use cases, related design decisions, key terminology, and how the implementation has evolved over time as Zephyr has grown and received more users and requirements for the subsystem.

The presentation will also go through common mistakes/oversights that user make when starting to use the APIs, and show some best practices to avoid them. Finally, there will be an overview of some of the latest enhancements and new convenience APIs of the network buffer subsystem.
Speakers
avatar for Johan Hedberg

Johan Hedberg

Staff Software Engineer, Silicon Labs
Johan got started with Open Source and Bluetooth early in his career, and eventually became a BlueZ & Linux kernel Bluetooth subsystem maintainer. The shift to Zephyr happened in 2015, about a year before the project's public launch, when Johan implemented its Blueooth host stack... Read More →
Thursday October 8, 2026 10:50 - 11:30 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

11:10 CEST

Fleet-Scale Bug Hunting in PX4 - Alexander Lerach, Auterion AG
Thursday October 8, 2026 11:10 - 11:30 CEST
Running PX4 on thousands of devices surfaces errors that don't appear in lab testing or flight tests. The kind that only show up at a customer site, that you cannot reproduce locally, that disappear when you add or remove code in a completely unrelated module.

This talk presents real incidents from running PX4 at commercial scale: problem descriptions, how debugging was done, and how the errors were fixed.

For each incident we share the heuristics we use to quickly identify which part of the system to investigate, and the tools we use to diagnose Heisenbugs.

We conclude with the hardware CI setup we built, including hardware tracing capabilities and describe how this can help to catch certain kinds of failures described in this talk. In addition we describe how this can be shared with upstream.
Speakers
avatar for Alexander Lerach

Alexander Lerach

Lead Embedded Software Engineer, Auterion AG
I am an embedded developer who likes working with microcontrollers and debugging low-level problems.

I previously worked in the automotive industry, where I developed a safe RTOS. Now, I enjoy writing drivers in PX4 and optimizing resource usage.

In my free time, I enjoy spending time in nature, especially hiking... Read More →
Thursday October 8, 2026 11:10 - 11:30 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

11:40 CEST

Own Your Stack: Sovereign Kubernetes From Bare Metal To Fleet - Sunnatillo Samadov, Ericsson & Bharath Nallapeta, Mirantis Inc.
Thursday October 8, 2026 11:40 - 12:20 CEST
For a decade, the default answer to "where does Kubernetes run" was someone else's cloud. But lately, regulated organizations, telcos, banks, and the public sector are pulling sensitive workloads back onto hardware they own and operate — for cost, performance, sovereignty, and increasingly to run AI and GPU workloads they control. The hard part is doing that without giving up the automation the cloud offers.

This talk covers the open-source stack for running your own bare metal, with each layer explained by the people who work on it. At the bottom, Metal3 turns physical servers into declarative Kubernetes resources and manages their lifecycle through the Kubernetes API. At the top, k0rdent manages fleets of those clusters with templates, policy, and drift detection. In the middle sits Cluster API, the standard both layers build on.

We'll walk through the layers working as one — from a rack of bare metal to provisioned clusters to a managed fleet, on hardware we run ourselves. Attendees get a reference architecture, practical guardrails, and clear criteria for when this fits. We'll be honest about the trade-offs: slower provisioning and elasticity bounded by the servers you have.
Speakers
avatar for Bharath N R

Bharath N R

OSPO Lead, Mirantis Inc.
Bharath Nallapeta leads the Open Source Program Office (OSPO) at Mirantis, driving strategic open-source initiatives and community engagement. With deep expertise in cloud-native technologies and Kubernetes, he bridges engineering excellence with open-source strategy, helping enterprises... Read More →
avatar for Sunnatillo Samadov

Sunnatillo Samadov

Open Source Developer, Ericsson
Sunnatillo is an open-source developer with 5 years of experience in cloud-native infrastructure. He is a maintainer of the Metal³ project (CNCF), where he works on bare-metal provisioning, Kubernetes operators, platform engineering, and CI/CD.

He also contributes to Cluster API, where he was Release Lead for the 1.9 cycle, and to the storage projects Rook and Ceph. He loves DevOps and building reliable Kubernetes platforms... Read More →
Thursday October 8, 2026 11:40 - 12:20 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

11:40 CEST

Beyond Cyclictest: Evaluating Real-Time Linux Through Real Interrupt Workloads - Koshiro Onuki, Toshiba Corporation
Thursday October 8, 2026 11:40 - 12:20 CEST
Real-time Linux systems are often judged with timer-based benchmarks such as cyclictest, a useful baseline for wakeup latency caused by scheduling and system activity. Yet many embedded workloads are driven by external events, not periodic timers: GPIO edges, network packets, serial I/O, or other hardware interrupts. In these systems, the critical value is the latency from an interrupt to a high-priority task.

This talk asks how much end-to-end interrupt-driven latency timer-based benchmarks can explain, and where path-specific measurements are required.

We revisit RT evaluation on modern PREEMPT_RT Linux by combining cyclictest with measurements for GPIO interrupt paths, network receive paths, and interrupt-to-userspace wakeups. Across scenarios with CPU isolation, IRQ affinity tuning, and other common RT optimizations, we compare what each method reveals and misses. For selected setups, we also compare kernel/PREEMPT_RT revisions and use ftrace to locate latency sources.

Rather than treating one benchmark as a complete RT verdict, this session clarifies how timer-based results can inform, but not replace, measurements for practical interrupt-driven embedded workloads.
Speakers
avatar for Koshiro Onuki

Koshiro Onuki

Software Engineer, Toshiba Corporation
Koshiro Onuki has been working as a Software Engineer at TOSHIBA Corporation since 2022. His main role is to develop Linux for various industrial embedded products. He is mainly involved in research and development of software updates.
Thursday October 8, 2026 11:40 - 12:20 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

11:40 CEST

Navigating the Complexity of Modern SoC Bootflows - Marco Felsch, Pengutronix e.K.
Thursday October 8, 2026 11:40 - 12:20 CEST
The last decade has shown a clear trend in dramatically increasing the boot process of modern SoC. If the i.MX6 bootflow reads like a short novel, the i.MX95 or TI K3 bootflow is a whole encyclopedia.

Today's heterogeneous SoCs combine CPUs of different types — Cortex-R/M cores alongside the application-class Cortex-A — and boot now begins on one of the smaller cores before handing control over to the Cortex-A. There are good reasons for this, such as meeting functional-safety requirements, but it is also a real burden for system designers who simply want to run Linux on the Cortex-A cores and make use of the GPU or VPU.

Each new component needs its own firmware: ideally built from open source, though closed-source pieces remain in the chain. The result is no shortage of cryptic acronyms — TF-A, FF-A, TEE, SCMI, PSCI, SCP, FIP.

This talk sheds some light into the dark. It explains what each of these components actually does and how they fit together. Attendees will leave able to map this general picture onto their own SoC, see which parts are open source and which are not, and know where to look when the bootflow misbehaves.
Speakers
avatar for Marco Felsch

Marco Felsch

Software Engineer, Pengutronix e.K.
Marco joined the Pengutronix graphics team in 2017. His work covers everything from system architecture to low-level bootloader firmware up to kernel and user-space development.
Thursday October 8, 2026 11:40 - 12:20 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

11:40 CEST

Hardening Your Software Supply Chain, Pin Your Actions and Patch Your Dependencies - Richard Tweed, Tessl
Thursday October 8, 2026 11:40 - 12:20 CEST
2026 has been a big year for supply chain attacks. Shai-Hulud, TeamPCP and others are determined to weaponise open source to hack our communities.

In this talk I'll show you tools and techniques you can use to defend your projects against them, and common pitfalls
Speakers
avatar for Richard Tweed

Richard Tweed

Member of Technical Staff - Leading security and infrastructure, Tessl
Richard Tweed is the security, compliance and infrastructure person at Tessl. He's the OWASP Project Lead and Lead Maintainer for [Github-Workflow-Updater-Extension](github.com/OWASP/GitHub-Workflow-Updater-Extension/) and the lead maintainer of [kube-audit-rest](https://github.c... Read More →
Thursday October 8, 2026 11:40 - 12:20 CEST
Terrace 2A (Floor 2)
  Open Source 101

11:40 CEST

Reverse Engineering Zephyr's Software Architecture for Safety-Critical Use - Roberto Bagnara, BUGSENG / University of Parma
Thursday October 8, 2026 11:40 - 12:20 CEST
Zephyr RTOS is increasingly relevant for safety-related and
mixed-criticality systems, where qualification and certification must
address standards such as IEC 61508 and ISO 26262. A key question is
how to provide evidence that software components are independent, that
freedom from interference is preserved, and that future changes can be
assessed without redoing unnecessary qualification work.

This session presents ongoing work on reverse engineering Zephyr's
effective software architectural constraints using static
analysis. Starting from concrete Zephyr configurations, we model
components, observe calls and data accesses, identify dependencies,
and compare the result with the project's intended layered
architecture.

The talk will show how this analysis supports safety arguments by
making software-level independence explicit and checkable. It will
also show how the same model enables Change Impact Analysis: when a
qualified Zephyr version or configuration evolves, the model helps
determine which components, assumptions, tests, and safety evidence
are affected. This is essential to make Zephyr's safety effort
sustainable over time and viable for safety-related development.
Speakers
avatar for Roberto Bagnara

Roberto Bagnara

Functional Safety Expert / Professor of Computer Science, BUGSENG / University of Parma
Roberto Bagnara is professor of Computer Science at the University of Parma and Software Verification Expert and Evangelist at BUGSENG. He coauthored more than 40 papers, in international journals and conference proceedings, on programming languages, static analysis and other techniques... Read More →
Thursday October 8, 2026 11:40 - 12:20 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

12:00 CEST

How To Talk To Your Lawyer About Open Source - Jimmy Ahlberg & Georg Kunz, Ericsson
Thursday October 8, 2026 12:00 - 12:20 CEST
Have you ever felt frustrated that your legal counsel simply does not seem to understand what you are saying? Or are you a lawyer who simply cannot understand why the developers you are trying to help can’t speak clearly? Then you are not alone, and this is the session for you! Lawyers and engineers often speak different languages, which can lead to frustration when collaborating in an open source setting.

Removing friction between legal and engineering communication is no small task. However, doing so unlocks significant value: legal can provide clearer, more actionable advice and better understand risks, while engineers and developers gain a deeper understanding of that guidance. We will will share personal OSPO insights and practical strategies for enabling efficient, clear communication between these distinct functions.

The goal is not to turn engineers into lawyers or lawyers into software developers, but rather helps both sides understand and support each other more effectively. Without a shared language between engineering and legal, messages to management risk getting lost in translation. With clear communication we can all work more efficient together!
Speakers
avatar for Jimmy Ahlberg

Jimmy Ahlberg

Expert & Senior Legal Counsel, Ericsson
Currently Mr Ahlberg is the Director of Open Source Policy with the Ericsson OSPO. Prior to the inception of the Ericsson OSPO he worked in different roles with various aspects of Open Source in the Ericsson organization, This included consumption of and contribution to Open Source... Read More →
avatar for Georg Kunz

Georg Kunz

Director Open Source Software, Ericsson
Georg is a director in Ericsson's Open Source Program Office. He is a passionate advocate for open source software and a long term contributor to a wide range of open source projects. He currently serves on the Technical Advisory Council and the Governing Board of the Open Source... Read More →
Thursday October 8, 2026 12:00 - 12:20 CEST
South Hall 1 A (Floor 1)

13:50 CEST

Flying a Drone Onto a High Voltage Power Line - Mads Bornebusch, Heimdall Power
Thursday October 8, 2026 13:50 - 14:10 CEST
Safely flying a drone close to high voltage power lines is a challenge. Making contact with a power line to install hardware on it is even more challenging. The line generates strong electromagnetic interference and there is no room for error in positioning.
In this talk we will go through the challenges we faced with positioning, magnetic interference and changing payload weight. We will show how tailoring the PX4 parameters can address these challenges and compare this to our experience using a DJI M600 where all problems have to be accounted for by our own specialized software. Finally we will present an open problem with RTK degradation resulting in sudden position jumps which we have currently handled in our own software.
Speakers
avatar for Mads Bornebusch

Mads Bornebusch

Head of Drone Development, Heimdall Power
Mads Bornebusch is Head of Drone Development at Heimdall Power, where he has spent 6 years building payloads for the DJI Matrice 600 Pro and Freefly Alta X that install sensors onto live high-voltage power lines. He works across the PX4 stack and ROS, adapting a commercial PX4 airframe... Read More →
Thursday October 8, 2026 13:50 - 14:10 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

13:50 CEST

10 Years of Bootable Containers in Production - Michal Toman, balena
Thursday October 8, 2026 13:50 - 14:30 CEST
While bootc has been gaining a lot of momentum over the last few years, we had been using a similar technology in production for over a decade. This timeline has given us long enough to go through the whole life-cycle of thousands of devices: initial provisioning, operating, delivering updates, and decommissioning.

Though our system is based on Yocto and Moby and specifically tailored for over 100 different (mostly edge/embedded) device types, it shares the same core principle of modern bootable container architecture: shipping the OS as a container image and configuring the init system to boot directly into it.

During the session, you will learn:
* How to boot into a containerized rootfs.
* How to manage state, persistent data, and OS updates via container registries over unstable networks.
* Lessons learned from 10 years of using bootable containers on 100+ different edge hardware types.

Prerequisites: Attendees should have a general understanding of OCI containers, Dockerfiles, and container registries.
Speakers
avatar for Michal Toman

Michal Toman

Embedded Linux Engineer, balena
Michal is a member of the OS team at balena. With over 15 years experience of bootstrapping, maintaining and optimizing Linux distributions, he now maintains a Yocto-based OS tailored to run containers on edge devices.
Thursday October 8, 2026 13:50 - 14:30 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

13:50 CEST

Cursed Camera Connectors - Kieran Bingham, Ideas on Board
Thursday October 8, 2026 13:50 - 14:30 CEST
An exploration into the complexities of physically connecting cameras to your embedded development board, and configuring them through device tree, and hopefully how we can make it easier in the future!


Small board computers are now prolific with their ability to connect RAW MIPI cameras directly to the board, and now that libcamera provides an open camera stack, connecting cameras to all your favourite boards should be easy.

But it's not. The connectors might have 15, 22 or 30 pins. The functions of each pin differ between boards. There's TypeA and TypeB cables.... And they better not be too long!

The lack of standardisation means it can still be difficult to connect your camera, and the combinatorial explosion of potential device tree overlays will soon become unmaintainable.

Lets look at suggestions that have been around for a decade already, and where that work is now leading to make connecting cameras easier!
Speakers
avatar for Kieran Bingham

Kieran Bingham

Director of Engineering, Ideas on Board
Kieran Bingham is an embedded software engineer working with Ideas on Board and specialising in Linux kernel developments with a focus on media related subsystems.

Kieran has worked with embedded Linux systems for 20 years through professional service companies and silicon vendo... Read More →
Thursday October 8, 2026 13:50 - 14:30 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

13:50 CEST

Beyond Strace: Syscall Analysis the Wireshark Way - Roland Knall, Wireshark Foundation
Thursday October 8, 2026 13:50 - 14:30 CEST
Every Linux engineer knows the moment: a process is misbehaving, so you reach for strace, get a wall of text, and start grepping. It works - until the problem spans multiple processes, the output is too much to read, or you need to correlate what a process did to the system with what it did on the network. strace and bpftrace are excellent at capturing syscalls. They give you much less help analyzing them.

Stratoshark, the Wireshark Foundation's newer tool, takes a different approach: it captures system calls and logs system-wide through the Falco libraries, then hands them to the same analysis engine that has served packet analysts for 25 years — display filters, coloring rules, follow-stream views, time correlation, and shareable capture files.

In this talk I'll show, live, how a Wireshark user's instincts transfer directly to syscall troubleshooting, where Stratoshark beats reaching for strace, and — just as importantly — where the older tools are still the right call. Expect real debugging scenarios, honest limitations, and a clear picture of when this newer approach earns its place in your toolbox.
Speakers
avatar for Roland Knall

Roland Knall

Core Developer, Wireshark Foundation
I'm a core developer at the Wireshark Foundation, and by day I'm a systems engineer in the network visibility space. I've spent the past decade working with OT networks and safety-critical protocols like openSAFETY. I also help organize the Wireshark community's events across Europe... Read More →
Thursday October 8, 2026 13:50 - 14:30 CEST
Panorama Hall (Floor 1)
  Linux

13:50 CEST

Yukti: A Unified Inference Interface for Low-Latency Machine Learning in High-Energy Physics - Sanjiban Sengupta, CERN, University of Manchester
Thursday October 8, 2026 13:50 - 14:30 CEST
Machine learning is increasingly used in high-energy physics, particularly in trigger systems that process data at rates of 100 kHz while making real-time event selection decisions. The latency and reliability requirements demand highly optimized inference pipelines. While portable solutions such as ONNX Runtime simplify deployment, many applications rely on hardware-specific libraries like NVIDIA TensorRT and MIGraphX (via ROCm) for optimal performance. Code-generation approaches such as SOFIE offer additional efficiency but introduce integration complexity.

We present a unified inference interface that abstracts backend-specific details while preserving performance. It enables execution across multiple inference libraries without data copies or user-side configuration changes. An offline processor converts trained models into backend-optimized plans, and a lightweight runtime loads and executes them through a common API with direct data access for heterogeneous environments.
Speakers
avatar for Sanjiban Sengupta

Sanjiban Sengupta

Doctoral Student, CERN, University of Manchester
Sanjiban is a Doctoral Student at CERN, affiliated with the University of Manchester, researching ML inference optimization for the LHC. He contributed to SOFIE, focusing on Keras/PyTorch parsing, ONNX-based operators, and GNN support. He was a CERN Summer Student (2022) and a GSoC... Read More →
Thursday October 8, 2026 13:50 - 14:30 CEST
Forum Hall (Floor 2)
  Open AI & Data

13:50 CEST

Observability Signals Outages Before They Happen: Lessons from MySQL - Igor Donchovski, Planetscale
Thursday October 8, 2026 13:50 - 14:30 CEST
Most MySQL incidents don't start with downtime, they start with small changes that go unnoticed for weeks or months.

This session focuses on operational trend analysis rather than real-time monitoring. We'll explore how growing full table scans, rising temporary table usage, lock contention, redo log pressure, buffer pool inefficiencies, and index bloat can reveal future performance and stability issues long before users are affected.

Through practical examples, attendees will learn how to identify meaningful signals, separate noise from actionable insights, and build lightweight monitoring approaches that provide long-term visibility into database health.

Whether you're a DBA, SRE, platform engineer, or developer responsible for production systems, you'll leave with a practical framework for understanding MySQL health over time.
Speakers
avatar for Igor Donchovski

Igor Donchovski

Enterprise Support Engineer, Planetscale
Most database problems aren't really database problems. They're problems nobody had time to look at closely until things started breaking.
Looking closely is the part I love. For 20+ years I've dug into why systems get slow, cost too much, or can't handle more users and turned th... Read More →
Thursday October 8, 2026 13:50 - 14:30 CEST
Terrace 2A (Floor 2)
  Open Source 101

13:50 CEST

USB Development and Testing on Native Simulator - Johann Fischer, Nordic Semiconductor
Thursday October 8, 2026 13:50 - 14:30 CEST
Zephyr's new USB support has been in development for some time. It consists of USB device and USB host support. The new device support has been the default for the last two releases. Work on the device part also introduced initial support for the host stack at that time. This was primarily necessary to enable USB/IP support on the native_sim board.

Johann will start with a brief overview of the current status of USB support.

Johann will then present information on virtual device/host controllers and the virtual bus. These are not actually platform-dependent, but they are most often used with native_sim. Furthermore, he will explain how virtual device/host controllers make it possible to build USB applications for native_sim and then export them to a Linux client using USB/IP server support.

Johan will demonstrate that the main benefit of virtual device/host support and native_sim is the ability to test hardware-independent USB code in CI, even on a pull request basis. For example, we can test the behavior of the host/device stack in response to invalid or undefined requests.

Johann will either provide a few examples or point to the samples and specific tests in the repository.
Speakers
avatar for Johann Fischer

Johann Fischer

R&D Engineer, Nordic Semiconductor
I am research and development engineer for NORDIC SEMICONDUCTOR ASA. Zephyr contributor since 2016, right after ELCE 2016 in Berlin. One of my main tasks is the maintaining of USB support in Zephyr.
Thursday October 8, 2026 13:50 - 14:30 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

14:40 CEST

Rsinit -- A Tiny Initramfs Toolbox for Embedded Systems - Michael Olbrich, Pengutronix
Thursday October 8, 2026 14:40 - 15:00 CEST
Traditionally, embedded systems were simple enough that an initramfs was not needed at all. This has changed in the last recent years with new requirements, often related to verified boot. That means that additional steps are now needed before the rootfs can be mounted.

Existing solutions, such as the Yocto initramfs-framework have significant drawbacks. The resulting initramfs is quite big (multiple megabytes) which has a noticeable impact on the boot time. And while the shell scripts make it easy to customize, robust error handling is difficult.

In this talk, Michael will introduce rsinit (https://github.com/pengutronix/rsinit), a single-binary-initramfs for embedded systems, written entirely in Rust.
It is tiny (less than 200 KiB), very fast and "just works" for simple use-cases. Alternatively, it can be uses as a library crate to build a fully custom binary.

Beyond being small, it brings the full power of Rust to the initramfs, which allows building additional features (such as splash screens or read-ahead) without pulling in further dependencies.

Michael will present the existing features, explain the design choices and give an overview of what is planed for the future.
Speakers
avatar for Michael Olbrich

Michael Olbrich

Software Engineer, Pengutronix
Michael Olbrich is an open-source developer with a focus on platform integration on embedded Linux. He works as a full-time Linux developer for Pengutronix. His job is to provide a smooth Linux experience on embedded devices from init systems to graphics and multimedia frameworks... Read More →
Thursday October 8, 2026 14:40 - 15:00 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

14:40 CEST

A Fork Load of Maintenance - Forking a Key Dependency - Tom Sadler & Joel Keers, BBC
Thursday October 8, 2026 14:40 - 15:00 CEST
The benefits of building software on top of open source solutions are well understood, such as avoiding reinventing the wheel, leveraging global expertise, and enabling interoperability. Another benefit is the ability to customise open source software for your use case, but in practice this will often be done by making a fork of the project, which can result in a significant maintenance overhead.

This talk is a case study of the BBC's fork of dash.js, a JavaScript library for media playback that is a key dependency for BBC web and connected TV apps. We will explore the reasons why a fork is being maintained, what the costs and benefits have been, and what is being done to reduce the maintenance overhead going forwards, including contributing to the mainline and engaging with the community. Attendees will come away with a better understanding of why and why not to fork, and how to reduce the burden of maintaining a fork.
Speakers
avatar for Tom Sadler

Tom Sadler

Senior Principal Software Engineer, BBC
Tom Sadler is a Senior Principal Software Engineer at the BBC, working with a number of teams on open source and industry engagement. He has led multiple teams working on the BBC’s Connected TV applications, with a focus on cross team collaboration. Tom has been a regular speaker... Read More →
avatar for Joel Keers

Joel Keers

Principal Software Engineer, BBC
Joel Keers is a Principal Software Engineer at the BBC with a focus on media playback for connected TV experiences. He's the lead maintainer on the BBC's open source TV playback library bigscreen-player and works with media playback experts within the BBC and the industry.
Thursday October 8, 2026 14:40 - 15:00 CEST
South Hall 1 A (Floor 1)

14:40 CEST

Building Deterministic Heterogeneous Multicore Industrial Systems on MPUs - Mingkai Hu, NXP
Thursday October 8, 2026 14:40 - 15:20 CEST
With the increasing availability of high-performance Arm® Cortex-A cores and multiple Cortex-M cores in modern MPUs, industrial systems are evolving toward heterogeneous multi-core architectures. For example, compute-intensive applications running on Linux with PREEMPT_RT on A cores, while deterministic real-time tasks running on A core with RTOS (Zephyr or FreeRTOS).
This session will explore the key challenges and corresponding solutions in enabling efficient multi-OS deployment on a single MPU. Topics include:

- Unified life cycle management for booting and orchestrating multiple operating systems across cores using TF-A, U-Boot, and Linux, and fast-boot optimization with TF-A mechanism.
- High-performance inter-core communication mechanisms for low-latency data exchange
- Resource sharing that allow different operating systems to access shared hardware IPs as isolated “virtual peripherals”

The session provides practical insights into building efficient and deterministic heterogeneous systems for industrial applications.
Speakers
avatar for Mingkai Hu

Mingkai Hu

Director of IIoT Vertical Enablement, NXP
I am a Director at NXP, leading the Real-time Edge and Robotics Edge platforms, with responsibilities spanning industrial IP bring-up (e.g., EtherCAT, TSN), performance optimization, multi-core system architecture, and global customer engagement.
Thursday October 8, 2026 14:40 - 15:20 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

14:40 CEST

From Power Sequences To Zink: Mainlining Hardware Accelerated 3D for RISC-V - Michał Wilczyński, Samsung Electronics
Thursday October 8, 2026 14:40 - 15:20 CEST
RISC-V is evolving into a capable desktop replacement, driven by boards like the Lichee Pi 4A, but a major barrier remains: the lack of a fully open, upstream graphics stack.

This talk explores enabling hardware accelerated graphics on modern RISC-V SoCs by extending the open source Imagination PowerVR driver for the TH1520. We dive into the architectural challenges of this port, including the complex power sequencing that necessitated the new pwrseq-thead-gpu driver. We break down how the kernel DRM driver interacts with the Mesa PVR Vulkan driver, and how leveraging the Zink translation layer finally brings standard OpenGL desktop acceleration to the platform. Finally, we cover the current mainline status and next steps for the StarFive JH7110 display controller integration.

Key Takeaways / What Attendees Will Learn:
- Porting the open PowerVR driver to the RISC-V TH1520 SoC.
- Implementing kernel power sequencing (pwrseq) for complex GPU domains.
- Interacting between DRM, Mesa Vulkan, and Zink for desktop GL support.
- Current mainline status of the JH7110 Display Controller.

https://mwilczynski.dev/posts/riscv-gpu-zink/
Speakers
avatar for Michał Wilczyński

Michał Wilczyński

Principal Software Engineer, Samsung Electronics
Michał Wilczyński is a Linux Kernel Engineer at Samsung, working on Tizen OS—where he gets to hack on the heart of smart devices. Before that, he spent time at Intel building networking drivers for the Linux kernel, and earlier in his career, he worked at Nokia and F5 Networks... Read More →
Thursday October 8, 2026 14:40 - 15:20 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

14:40 CEST

Beyond the 10-Year Promise: How CIP's Industrial-Grade Foundations Anchor the AI Era - Yoshitake Kobayashi, Toshiba / CIP & Urs Gleim, Siemens AG
Thursday October 8, 2026 14:40 - 15:20 CEST
In April 2026, the Civil Infrastructure Platform (CIP) reached a historic milestone—its 10th anniversary—and delivered on its founding promise: a full 10-year support lifecycle for the CIP Super Long-Term Support (SLTS) Kernel. CIP is believed to be the first open-source community to sustain a 10-year kernel support commitment in practice. It is also the first OSS project to conform to both IEC 62443-4-1 and 4-2.
At OSS Japan in December 2025, we looked "towards" this decade. This talk marks its completion—and turns to the next one. AI is accelerating software development at unprecedented speed while introducing new complexity and supply-chain risk into infrastructure that must run safely for decades. How do we sustain trust, security, and longevity when the software landscape shifts daily?
We will revisit the strategies and engineering behind CIP's 10-year support and security certifications, then examine why this proven framework matters more than ever in the AI era. Attendees will leave with practical insight into protecting supply-chain integrity, navigating compliance, and building open-source foundations that endure technological disruption.
Speakers
avatar for Urs Gleim

Urs Gleim

Distiguished Engineer Connectivity and Edge Computing, Siemens AG
Urs Gleim is leading the embedded systems group at Siemens Corporate Technology which hosts the Corporate Competence Center Embedded Linux. This team centrally provides Linux and related technologies for various Siemens products. Additionally, he is the Chair of the Governing Board... Read More →
avatar for Yoshitake Kobayashi

Yoshitake Kobayashi

CIP TSC Chair, Toshiba / CIP
Yoshitake Kobayashi is the Assistant General Manager and Senior Fellow of the Digital Innovation Technology Center at Toshiba Corporation, where his team delivers a Linux distribution for a wide range of Toshiba products. His research interests span operating systems, distributed... Read More →
Thursday October 8, 2026 14:40 - 15:20 CEST
Panorama Hall (Floor 1)
  Linux

14:40 CEST

Fake Drivers: A Practical Guide To Zephyr Test Doubles - Henrik Brix Andersen, Vestas Wind Systems A/S
Thursday October 8, 2026 14:40 - 15:20 CEST
In Zephyr, subsystems, middleware, and application components typically depend on one or more lower-level device driver APIs. For testing these upper-level subsystems in isolation, the lower-level driver dependencies must still be satisfied. A popular software design pattern for this is to use test doubles. However, how can this be achieved in Zephyr without introducing test-specific changes to the upper-level subsystem?

The solution is to use fake drivers. This presentation will explore various use cases for employing fake device drivers as test doubles, examine the structure of a fake driver implementation, and demonstrate how fake drivers can be used to not only satisfy test dependencies, but also facilitate test case isolation, driver API call inspection and instrumentation.
Speakers
avatar for Henrik Brix Andersen

Henrik Brix Andersen

Functional Lead, Embedded Platforms & Cyber Security, Vestas Wind Systems A/S
Henrik Brix Andersen is Functional Lead, Embedded Platforms & Cyber Security at Vestas Wind Systems A/S, providing firmware expertise for Vestas’ sustainable energy solutions. Brix is a passionate open-source software engineer and a long-standing contributor to the Zephyr RTOS project... Read More →
Thursday October 8, 2026 14:40 - 15:20 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

15:00 CEST

State of MAVSDK - Julian Oes, Julian Oes Consulting
Thursday October 8, 2026 15:00 - 15:20 CEST
As a maintainer of MAVSDK I would like give an update on the current state of the project, specifically about changes and improvements coming with MAVSDK v4, such as:

- New lightweight Python wrappers
- New MavlinkDirect plugins
- And lots of improvements under the hood
Speakers
avatar for Julian Oes

Julian Oes

Drone Software Consultant, Julian Oes Consulting
Julian Oes has been working on and around PX4 since its inception in 2012, at various companies and always as a maintainer of the various open source projects. Since 2022, Julian operates as a consultant / freelancer in the drone space. He works at the intersection between drone internals... Read More →
Thursday October 8, 2026 15:00 - 15:20 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

15:50 CEST

SIH: A Flight Simulator That Lives Inside the Autopilot - Marco Hauswirth, Auterion AG
Thursday October 8, 2026 15:50 - 16:10 CEST
Most PX4 simulation relies on an external simulator talking to the autopilot over a network bridge. SIH, the Simulator In Hardware, does the opposite: it is a single PX4 module that integrates the full rigid-body equations of motion right next to the flight stack. The same code runs as a SITL process on your laptop and, just as well, directly on the flight controller, feeding synthetic sensor data into the estimation pipeline while the board flies a virtual vehicle.

This talk opens up SIH and shows how little there is between you and a flying model: how actuator outputs become forces and torques, are integrated through the equations of motion, and are reconstructed into noisy IMU, baro, GNSS, and airspeed signals that the rest of PX4 cannot tell from real hardware. We cover the vehicle types supported, the aerodynamic model that makes adding an airframe a matter of physics rather than plumbing, and how to launch, run, and extend SIH.
Speakers
avatar for Marco Hauswirth

Marco Hauswirth

GNC Engineer, Auterion AG
2024 – present: GNC Engineer at Auterion with a focus on State Estimation. Upstream PX4 development and customizations for clients
2023 - 2024: Research engineer for GNSS-denied drones using radar sensors at ETH Zurich – ASL
2021-2023: Masters degree in Robotics, Systems, and... Read More →
Thursday October 8, 2026 15:50 - 16:10 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

15:50 CEST

Signed, Sealed, Delivered: Yocto Project Reference Containers - Tim Orling, Konsulko Group
Thursday October 8, 2026 15:50 - 16:30 CEST
Containers ship everywhere, yet their software supply chain remains murky. Today's SBOM tools work backwards, scanning a finished image to guess what's inside — an approach prone to omissions and inaccuracies that the EU Cyber Resilience Act will make increasingly untenable.

The Yocto Project uses a fundamentally different path. Because we build everything from source, we generate an accurate, complete SPDX 3.0 SBOM during the build, not after it — with full license and provenance information. In this presentation, we discuss a new approach that lets us build minimal, multi-layer OCI container images using standard Yocto tooling, with no special privileges required, to produce repeatable and auditable results.

We will demonstrate end-to-end automation on the Yocto Project AutoBuilder: building reference container images, attaching SBOM and license attestations, signing them, and pushing to public registries. Attendees will leave understanding how reproducible builds, from source, close the container manifest gap — and how to consume these images today.
Speakers
avatar for Tim Orling

Tim Orling

Principal Software Engineer, Konsulko Group
Tim Orling is a Principal Software Engineer at Konsulko Group. Tim was elected to the OpenEmbedded Board in 2022 and the OE TSC in 2023. He has spent many years as a volunteer developer for OE and the Yocto Project. He has been an open source software and hardware enthusiast for many... Read More →
Thursday October 8, 2026 15:50 - 16:30 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

15:50 CEST

Using the Linux Tracing Infrastructure and eBPF for Latency Analysis - Jan Altenberg, Open Source Automation Development Lab (OSADL) eG
Thursday October 8, 2026 15:50 - 16:30 CEST
The Linux tracing infrastructure provides several methods for recording events in the operating system. Apart from many other use cases, tracing is often being used to identify the root cause of high latencies on Linux with enabled real-time configuration. The possibility of filtering and a fine granular selection of the events to be recorded reduces the overhead and therefor allows tracing of time critical sections with low impact on the runtime behavior. Events generated by the tracing infrastructure can also serve as a hook for eBPF programs, which run in a sandbox inside the kernel. These can be used for timing analysis within the kernel without the need of switching to userspace. This presentation will give a brief overview of the Linux tracing infrastructure, eBPF and how they can be used to analyze scheduling latencies on a Linux system with real-time requirements.
Speakers
avatar for Jan Altenberg

Jan Altenberg

Director R&D, Open Source Automation Development Lab (OSADL) eG
Jan Altenberg has more than 20 years of experience in developing and maintaining Embedded Linux systems. Since October 2021 Jan works as Senior Open Source Consultant and Embedded Systems Integrator at the Open Source Automation Development Lab (OSADL) eG and since 2024, he also serves... Read More →
Thursday October 8, 2026 15:50 - 16:30 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

15:50 CEST

Open Source Maintainers Vs. The CVE Tsunami - Madelyn Olson, AWS & Harkrishn Patro, Apple
Thursday October 8, 2026 15:50 - 16:30 CEST
AI-powered security models have fundamentally changed vulnerability discovery. What once took months of expert auditing now runs continuously at scale, flooding maintainers with vulnerability reports, coordinated disclosure requirements, patch demands, and CVE assignments. The industry celebrates AI finding more bugs; maintainers are drowning in the reports.

This talk examines how maintainers of critical open-source infrastructure can adapt to handle the incoming wave. This requires new processes at all levels of the development process. Maintainers can use AI tooling to help differentiate slop requests from genuine vulnerabilities, use them to help automate and coordinate disclosures, and start proactively searching for these vulnerabilities so they never entered production in the first place. We'll give concrete examples and patterns that you can use to apply to your own works as a maintainer or security researcher.
Speakers
avatar for Harkrishn Patro

Harkrishn Patro

Software Engineer, Apple
I love OSS. I’m primarily involved in the Valkey project. I’m always up for a chat about data storage systems. 
avatar for Madelyn Olson

Madelyn Olson

Principal software engineer, AWS
I work primarily on the open source Valkey project and evangelize the importance of open source software development.
Thursday October 8, 2026 15:50 - 16:30 CEST
Club H (Floor 1)

15:50 CEST

Maven-Lockfile: Locking Down the JVM Supply Chain for Hermetic Builds - Aman Sharma, KTH Royal Institute of Technology & Bruno Pimentel, Red Hat
Thursday October 8, 2026 15:50 - 16:30 CEST
Modern software projects depend on hundreds of third-party libraries, making reproducible and secure builds increasingly difficult. However, Maven, one of the most widely used Java build tools, has no native lockfile support. This leaves projects exposed to version drift, tampered artifacts, and dependency confusion attacks, while making hermetic builds difficult to achieve.

Maven-lockfile addresses this by generating a cryptographic record of all resolved artifacts, including transitive dependencies, and validating them on every build. This enables frozen dependency sets for exact historical reproducibility. In collaboration with Red Hat, we extended maven-lockfile to systematically capture build extensions, BOMs, and other dynamically fetched artifacts required for hermetic builds, and compare it against Maven-native approaches like Trusted Checksums.

To complete the workflow, we demo maven-lockfile alongside Hermeto, a CLI tool that pre-fetches dependencies into a local cache, enabling fully network-isolated builds.
Speakers
avatar for Aman Sharma

Aman Sharma

PhD Student, KTH Royal Institute of Technology
I am a PhD student at KTH Royal Institute of Technology, Stockholm, Sweden and a researcher in CHAINS project funded by the Swedish Foundation for Strategic Research. We work on securing software supply chains. Before that, I received my Bachelor in Technology from Indian Institute... Read More →
avatar for Bruno Pimentel

Bruno Pimentel

Software Engineer, Red Hat
Software Engineer @ Red Hat
Thursday October 8, 2026 15:50 - 16:30 CEST
Club E (Floor 1)

15:50 CEST

Stop Rewiring: Scale Embedded Hardware Testing - Franklin Cooper, Texas Instruments
Thursday October 8, 2026 15:50 - 16:30 CEST
Embedded test automation is often limited by something simple: wires. External loopback, testing another peripheral instance, validating a power domain, or connecting to external equipment can each require a different setup. As coverage grows, teams end up with custom fixtures, manual steps, fragile lab instructions, and CI systems that cannot reproduce a developer’s bench setup.

This talk presents an open source framework that uses a low-cost, off-the-shelf FPGA board as a programmable routing fabric. It sits between the device under test and the rest of the setup, routing pins to loopbacks, other peripherals, boards, or tools.

The framework is software-agnostic: it works with Zephyr, Linux, bare metal, or vendor SDK testing. Tests declare the needed connections, metadata describes the FPGA-to-device wiring, and the framework generates per-test Verilog, runs open source FPGA tools, and programs the FPGA.

The talk will cover lessons from real tests, common peripheral limits, demo and how to reproduce this setup at a desk, in a lab, or in CI.

Key benefits:
*Low-cost off-the-shelf hardware
*Open source software
*Easier developer desk testing
*More CI/CD regression coverage
Speakers
avatar for Franklin Cooper

Franklin Cooper

Embedded Software Engineer, Texas Instruments
Franklin Cooper Jr. is an embedded software engineer at Texas Instruments with over 15 years of experience in embedded software development. Throughout his career, he has contributed to and upstreamed work in several open source projects, including U-Boot, Linux, and Yocto. His work... Read More →
Thursday October 8, 2026 15:50 - 16:30 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

16:40 CEST

Bring Linux DRM Display Panel Support in the Modern Age - Neil Armstrong, Linaro
Thursday October 8, 2026 16:40 - 17:20 CEST
Since the introduction of the first Samsung DSI panel, the Linux DRM panel API became an important piece of software used to enable displays across very different hardware architectures. However, the panel support API hasn't evolved much since then.

Currently, the API is showing its age alongside modern graphics stacks. It doesn't support the atomic DRM API and lacks the ability to adapt the power setup while changing DRM modes. Furthermore, it doesn't support the advanced features that new Display Driver ICs (DDIC) heavily rely on, such as standby and advanced power states, advanced color management, dynamic rate switching, command mode self-refresh and more.

Neil will present you the history of the panel API from its origins, outline its current architectural limitations, and lead this BoF to discuss how to bring Linux DRM Display Panel support into the modern age. This open discussion will focus on how to collaboratively solve all those missing features to support modern devices and close the widening gap with downstream vendor support.
Speakers
avatar for Neil Armstrong

Neil Armstrong

Senior Linux Engineer, Linaro
Neil joined Linaro in September 2022 to work full-time on Qualcomm Upstreaming of their high-end SoC platforms.
Neil has been hacking on embedded platforms since he was 16 years old, from Casio Calculators to Phones platforms in the last months.
He maintains the Amlogic Linux & U-Boot baseport, Linux DRM Bridge & Panel codebase. In addition to Qualcomm, Neil regularly contributes to the Linux Kernel and U-Boot supporting the Amlogic SoCs support and DRM codebase... Read More →
Thursday October 8, 2026 16:40 - 17:20 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

16:40 CEST

One Yocto Distro, Many Boards, Few Engineers - Yann Cardaillac, Balena
Thursday October 8, 2026 16:40 - 17:20 CEST
At balena, a 6 person team maintains 1 distro meta for 80+ boards across multiple Yocto versions. This talk unpacks the layer layout that make this level of scale possible.
Maintaining one distro across multiple architectures and vendor BSPs is, above all, a separation-of-concerns problem. Centralizing every board in one BSP layer, forking vendor trees, or splitting repos without clear boundaries each trades one pain for another: merge hell or upgrade paralysis when vendors move at different speeds.
Yocto's layer model is built for it but the boundaries are easy to miss. I learned it the hard way: managing boards from several vendors in a single BSP works at first, then fails to scale.
During the session, you'll learn:
- How to structure distro logic, version-specific, board and vendor layers
- Anti-patterns from real projects
- Strategies for on-boarding new hardware boards without duplicating distro logic or getting blocked by a lagging vendor BSP
You will leave with a concrete layout to evaluate against your own BSPs and enough pointers using balenaOS’s oss repositories as a reference implementation to start migrating toward a maintainable global BSP.
Speakers
avatar for Yann Cardaillac

Yann Cardaillac

Embedded Linux Engineer at Balena, Balena
Yann is a member of the OS team at balena, where he works on the Yocto-based distribution that enables running Docker containers on the edge at scale. For over a decade, he has used Yocto and Buildroot and open-source tools across robotics, defense, IoT, and consumer electronics as... Read More →
Thursday October 8, 2026 16:40 - 17:20 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

16:40 CEST

From Source To Wheel: Solving Python's Bootstrapping Problem - Rohan Devasthale & Christian Heimes, Red Hat
Thursday October 8, 2026 16:40 - 17:20 CEST
When you run pip install numpy, pip downloads a pre-built binary someone else compiled. For most developers that's fine, but in regulated environments or anywhere supply chain integrity matters, it's a gap one that incidents like the LiteLLM PyPI compromise and fake DeepSeek packages have made harder to ignore.

There's a bootstrapping problem too: building numpy needs setuptools, and building setuptools needs… setuptools. Every existing tool pip, uv, conda breaks this cycle by quietly downloading pre-built binaries. None give you a unified view of the full dependency tree, making it hard to audit what was built, from where, and in what order.

This talk walks through an unsolved problem in Python packaging bootstrapping entire dependency trees from source and how Fromager tackles it using PEP 517. We'll cover:

1. Why pip install --no-binary :all: doesn't get you to "built from source"
2. Where pip, Nix, Spack, and Bazel each fall short
3. The two-stage discover/build split and the JSON artifacts it produces for auditing
4. Why building packages as collections keeps them ABI-compatible critical for stacks like PyTorch with CUDA/ROCm native code
Speakers
avatar for Rohan Devasthale

Rohan Devasthale

Senior Software Engineer, Red Hat
Hi! I am a Senior Software Engineer at Red Hat and an open source enthusiast based in the United States. I enjoy coding and use of AI to automate things. Apart from technical work, I like to travel and explore new places. I am a foodie and also play badminton.
avatar for Christian Heimes

Christian Heimes

Senior Principal Software Engineer, Red Hat

Thursday October 8, 2026 16:40 - 17:20 CEST
Club E (Floor 1)

16:40 CEST

A Generic RF PHY Driver API for Proprietary Protocols in Zephyr - Sean Lyons, Texas Instruments
Thursday October 8, 2026 16:40 - 17:20 CEST
Zephyr has mature driver APIs for IEEE 802.15.4, Bluetooth, Wi-Fi, and LoRa but none for radios running proprietary or custom link-layer protocols. The gap is most acute in Sub-1GHz but applies equally to proprietary 2.4GHz radios used in audio, gaming peripherals, and industrial control.
Current workarounds include using a protocol-specific API like ieee802154_radio_api or shipping standalone drivers and importing MAC assumptions that don't belong at the PHY. The result is duplicate code across out-of-tree drivers that lock applications to a single chip and block upstream contribution. The problem spans standalone transceivers and integrated SoCs across TI, Silicon Labs, Microchip, and ST.
This talk revives Zephyr RFC #43201 (closed 2022) with a focused proposal: a new prop_rf driver API covering only physical-layer operations, leaving link-layer concerns to the application or protocol implementer. Three principles drive the design: applications port across vendors without API lock-in; vendor HALs remain free to expose custom features via device-specific extensions; and the API works for both external transceivers and integrated SoCs.
Speakers
avatar for Sean Lyons

Sean Lyons

Software R&D manager, Texas Instruments
Sean Lyons (he-him) 6/24/2026 11:30 AM • Let me take a stab at it.

Sean has been working in TI's Connectivity team since 2015. He is leading a SW R&D department responsible for RTOS integration and low level driver development including RF drivers. He is passionate about open source and shifting TI's development flows towards open-source ecosyste... Read More →
Thursday October 8, 2026 16:40 - 17:20 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

17:00 CEST

An Open-Source PX4 Swarm With Onboard ESP32-P4 Vision - Mindaugas Jonauskis, Team Mach Mind
Thursday October 8, 2026 17:00 - 17:20 CEST
I want to share our bumpy road on Swarm Drone Challenge 2026 (ILA Berlin) with a team of two people and what two stubborn guys can achieve during weekends - 4th place. We built a swarm of 5 drones, each running PX4 for flight, coordinated by a ROS2 ground station and onboard with two ESP32-ser. microcontrollers. ESP32-P4 was dedicated to onboard ArUco vision and ToF obstacle sensing (no Linux SBC) and an ESP32-S3 handling MAVLink and micro-ROS comms over WiFi.

I will cover architecture — PX4 + MAVLink + a ROS2 commander that assigns swarm roles and streams waypoints — and the onboard vision pipeline on bare microcontrollers. Comparison of Version 1.0 (single-MCU) vs Version 2.0 (dual-MCU) and why we shipped a deterministic Manhattan-grid navigation fallback when ArUco-EKF localization could not be deployed in time.

Our solution was open-sourced - https://github.com/machmind-dev/drone-swarm-challenge-2026
Speakers
avatar for Mindaugas Jonauskis

Mindaugas Jonauskis

Co-Founder & Embedded Systems Engineer, Team Mach Mind
I'm co-founder of Mach Mind, a two-person team building autonomous drones in our spare time. At the 2026 Swarm Drone Challenge (ILA Berlin) we placed 4th with an open-source 5-drone PX4 swarm that runs onboard vision on bare ESP32 microcontrollers — no Linux SBC. By day I'm an embedded/systems... Read More →
Thursday October 8, 2026 17:00 - 17:20 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit
 
Friday, October 9
 

09:05 CEST

The Upstream Way: Current State of I.MX SoCs in the Linux Kernel - Daniel Baluta, NXP Semiconductors
Friday October 9, 2026 09:05 - 09:45 CEST
NXP has historically maintained a large number of i.MX-specific patches in downstream Linux trees, increasing maintenance effort and limiting community adoption.

This talk presents NXP's updated upstreaming strategy and the progress made across i.MX SoCs. We will review the current upstream status of key drivers, lessons learned from recent upstreaming efforts and the processes introduced to improve patch quality and acceptance rates.

We will also cover NXP's efforts to strengthen community engagement, work on testing infrastructure and plans for the remaining internal patches.
Speakers
avatar for Daniel Baluta

Daniel Baluta

Software Engineer, NXP Semiconductors
Daniel works at NXP in Romania hacking on Linux kernel audio drivers for i.MX boards. He is a teaching assistant for Operating System Internals class at University POLITEHNICA in Bucharest and very passionate about helping newcomers to the Linux kernel world while being a mentor for... Read More →
Friday October 9, 2026 09:05 - 09:45 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

09:05 CEST

XDP & XSK Support From a Linux Driver Standpoint - Théo Lebrun, Bootlin
Friday October 9, 2026 09:05 - 09:45 CEST
XDP (eXpress Data Path) is about running eBPF programs on network packets as early as possible. The goal of such an approach is performance: we minimise operating system networking stack overhead by letting the user decide which packets should reach it.

XSK is an extension to XDP allowing zero-copy redirect from the Ethernet driver directly to userspace processes. This approach approximates kernel-bypass solutions while remaining well integrated into the Linux networking stack for less critical traffic.

Both bring benefits but require adaptations on an Ethernet MAC driver standpoint; we'll dig into those. Quite some ground will be covered:
- allocators, their allocation patterns and memory layout,
- networking subsystem callbacks to be implemented,
- scheduling logic at runtime,
- performance numbers,
- etc.

Experience has been acquired through the upstreaming process of XDP & XSK support to the MACB/GEM controller driver, after having added Mobileye EyeQ5 support to the same driver.

References:
https://en.wikipedia.org/wiki/Express_Data_Path
https://ebpf.io/
https://www.kernel.org/doc/html/latest/networking/af_xdp.html
Speakers
avatar for Théo Lebrun

Théo Lebrun

Embedded Linux engineer & trainer at Bootlin, Bootlin
Théo joined Bootlin in 2022, studying the potential applications for the PipeWire ecosystem to embedded topics. He then went onto Linux kernel work: deep suspend-to-RAM support for a TI automotive SoC, upstreaming of base platform and Ethernet controller support for Mobileye hardware... Read More →
Friday October 9, 2026 09:05 - 09:45 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

09:50 CEST

How We Shipped Power & Perf Optimized Snapdragon Based Product on Upstream - Neil Armstrong & Rui Silva, Linaro
Friday October 9, 2026 09:50 - 10:20 CEST
Booting mainline Linux on a Snapdragon SoC is a great step, but it is very different from shipping a product. In standard vendor BSPs, power and performance tuning is often hidden behind blobs and downstream hacks. When you build a commercial device entirely on upstream Linux and U-Boot, you lose those vendor shortcuts. You have to understand the hardware deeply to balance battery life and processing power.

In this talk, we will share our war story of shipping a real-world consumer product based on Snapdragon SoC using mainline Linux & U-Boot. We will guide you through our optimization journey, starting from the initial dev kit. We will see how we used the Linaro DebugBoard to profile and tune power consumption across different sleep states and active workloads. We will talk about leveraging standard kernel power management frameworks instead of relying on downstream workarounds, which helps keep the system easily maintainable.

We will explain how we identified power regressions and traced performance bottlenecks using upstream tools. Finally, we will look at the practical trade-offs we had to make to deliver a highly responsive, low-power device while staying close to mainline
Speakers
avatar for Rui Miguel Silva

Rui Miguel Silva

Senior Linux Engineer, Linaro
Working on Linux systems for long time...
avatar for Neil Armstrong

Neil Armstrong

Senior Linux Engineer, Linaro
Neil joined Linaro in September 2022 to work full-time on Qualcomm Upstreaming of their high-end SoC platforms.
Neil has been hacking on embedded platforms since he was 16 years old, from Casio Calculators to Phones platforms in the last months.
He maintains the Amlogic Linux & U-Boot baseport, Linux DRM Bridge & Panel codebase. In addition to Qualcomm, Neil regularly contributes to the Linux Kernel and U-Boot supporting the Amlogic SoCs support and DRM codebase... Read More →
Friday October 9, 2026 09:50 - 10:20 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

11:05 CEST

Lightning Talk: Declarative Systems Still Have Hidden State - Kim Schaefer, Game Plan Tech
Friday October 9, 2026 11:05 - 11:15 CEST
Declarative infrastructure promises reproducibility: desired state is defined, controllers reconcile drift, and redeployments should behave predictably.

Except they often don’t.

This talk explores the hidden operational state declarative systems quietly depend on: webhook certificates cached in cluster resources, infrastructure dependencies that survive deletion, controller ordering assumptions, persistent node state, and lifecycle coupling reconciliation engines cannot see.

These problems become especially visible when infrastructure spans multiple systems or workloads take minutes rather than seconds to initialize.

Using real operational examples from Kubernetes and GitOps environments, this lightning talk examines why “delete and redeploy” frequently fails to produce clean state and why many reliability problems are actually hidden state-management problems.

The core lesson: declarative systems still depend on operational history, even when the infrastructure appears fully declarative.
Speakers
avatar for Kim Schaefer

Kim Schaefer

Senior DevOps Engineer, Game Plan Tech
Kim Schaefer is a Senior DevOps and Cloud Engineer focused on Kubernetes, GitOps, and secure platform engineering. She designs and operates production Kubernetes platforms with a focus on deployment reliability and automation in constrained environments.

Kim's work centers on bu... Read More →
Friday October 9, 2026 11:05 - 11:15 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

11:05 CEST

A Language Model in 256 MB: Running SLMs on a $10 RISC-V Linux Board Without a GPU - Akshat Khanna, Angel One
Friday October 9, 2026 11:05 - 11:45 CEST
Running a language model used to mean a datacenter GPU. This talk shows a 1-billion-parameter model generating tokens on a roughly $10 RISC-V board (the SOPHGO SG2002, as on the Sipeed LicheeRV Nano) with 256 MB of RAM no GPU, no Python, no cloud. The speaker walks the full embedded stack: a minimal C transformer inference engine running quantized GGUF weights, cross-compiled for RISC-V on embedded Linux, plus the quantization (4-bit GGUF), memory-mapping, and KV-cache choices that make it fit. The session is honest about the trade-offs, tokens-per-second, accuracy loss from aggressive quantization, and where an NPU or a microcontroller-class TinyML model is the better call. Attendees leave with a reproducible recipe for putting useful local inference on cheap, disconnected, privacy-sensitive hardware, and a clear-eyed sense of what 256 MB can and cannot do.
Speakers
avatar for Akshat Khanna

Akshat Khanna

Machine Learning Engineer, Angel One
Akshat Khanna is a Machine Learning Engineer at Angel One, where he builds GenAI-powered bots and leverages agentic AI for high-performance trading platforms. Previously, he worked as MTS at VMware Tanzu, focusing on Kubernetes solutions for the edge. He is an active open-source contributor... Read More →
Friday October 9, 2026 11:05 - 11:45 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

11:05 CEST

From Vendor Bring-up To Community Upstreaming: What We Learned From SpacemiT K3 - Troy Mitchell, SpacemiT
Friday October 9, 2026 11:05 - 11:45 CEST
Upstreaming initial support for a new RISC-V SoC is becoming more common, but keeping that support useful, reviewable, and maintainable is still difficult. As more application-class SoCs land, a one-vendor model stops scaling.

This talk uses SpacemiT K3, the first mass-produced RVA23-compatible SoC, as a case study. It's not about what we support, but about the upstream work we did, what tripped me up, and how we got past it.

We'll walk through in-house K3 enablement work on DMA, audio I2S, bindings, and DTS. The interesting patches aren't the ones that applied cleanly; they're the ones that didn't. We'll look at where to split bindings, drivers, and DTS; how K3 hardware constraints had to be modeled in upstream terms; and how review rounds reshaped the design.

The second part focuses on working with community developers outside SpacemiT: making boards available, keeping test images reproducible, pre-reviewing patches, turning regression around quickly, and keeping the internal tree close to mainline.

We’ll share lessons practical for making new RISC-V platforms not only upstreamed once, but easier for vendors and community contributors to review, test, debug, and maintain.
Speakers
avatar for Troy Mitchell

Troy Mitchell

Software Design Engineer, SpacemiT
I'm Troy Mitchell, a software design engineer at SpacemiT and a contributor to the upstream Linux kernel and OpenSBI, working on low-level system software and kernel enablement for RISC-V SoCs. I maintain the SpacemiT K1 I2C/I2S driver upstream, and day to day I work on kernel drivers... Read More →
Friday October 9, 2026 11:05 - 11:45 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

11:55 CEST

What Hides Below 10,000+ SBOMs of a Foundation - Mario Fahlandt, Kubermatic
Friday October 9, 2026 11:55 - 12:15 CEST
It all started with the simple question: "Do we have all exceptions for license dependecies for all the projects?"

As you can imagine this is not a question most organizations can answer out of the blue.
To solve this we started not only generating SBOMS for every single project in the CNCF., but also every Subproject that has a release.
Along the way we hit every wall: inconsistent release processes, license resolution dead ends, CVE matching at scale, and the discovery that generation is maybe 20% of the problem.
We will dig into the full pipeline we built. Automated SBOM generation at scale, auto discovery of Repositories, experimenting with differnet SBOM generation tools, hitting Git limits, license enrichment via deps.dev and ClearlyDefined, vulnerability cross-referencing via OSV, and OpenVEX for suppression.
After we finished this we realized that 10,000+ SBOMs are useless if you cannot search, query, or govern them. So we built an open source toolchain for the whole thing.

You will learn how to build a toolchain for Supply Chain at a sclae that supports a foundation and you can also use in organizatiosn that is fully Open Source and Apache 2 licensed.
Speakers
avatar for Mario Fahlandt

Mario Fahlandt

Customer Delivery Architect, Kubermatic
Mario Fahlandt is a CNCF Technical Oversight Committee member, SIG ContribEx co-chair, and Kubernetes AI Conformance subproject lead. He maintains cncf/sbom, the project generating SPDX SBOMs for every CNCF release, and created SeeBOM, an open-source SBOM governance platform now applying... Read More →
Friday October 9, 2026 11:55 - 12:15 CEST
South Hall 1 A (Floor 1)

11:55 CEST

Why Switch To External Flight Modes? - Dawid Rudy, Auterion
Friday October 9, 2026 11:55 - 12:15 CEST
When it comes to controlling PX4 from a companion computer, developers are often spoiled for choice - leading to confusion about which architecture best suits their specific mission requirements. Historically, Offboard Mode has been the go-to default, but the evolution of the PX4 ecosystem has introduced powerful alternatives like External Flight Modes and the native ROS 2 Control Interface.
This session provides a technical breakdown of how PX4 handles companion computer inputs under both paradigms. We will explore how External Flight Modes register directly with PX4's internal mode manager, allowing custom autonomy apps to behave like native flight modes with built-in safety boundaries. Attendees will learn the differences between these methods, the performance benefits of moving to the ROS 2 bridge, and a practical migration path to transition legacy offboard code into robust, external ROS 2 applications.
Speakers
avatar for Dawid Rudy

Dawid Rudy

GNC Engineer, Auterion
RC hobbyist and FPV drones enthusiast, actively contributing to UAV-related open-source projects.
Friday October 9, 2026 11:55 - 12:15 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

11:55 CEST

Your Agent Did What? Forensic Observability for Systems That Don’t Leave Obvious Footprints - Adriana Villela, Dynatrace & Kasper Borg Nissen, Dash0
Friday October 9, 2026 11:55 - 12:35 CEST
The GenAI observability space is fragmented right now. OpenInference, OpenLLMetry, framework-specific conventions are all solving the same problems with incompatible attribute names. That made sense when OTel’s GenAI support was thin. It makes less sense today.

OTel is where this converges. Getting there from where most teams actually are isn’t obvious. Kasper and Adriana cover the current landscape, how the genainormalizer processor bridges the gap at the collector layer, and what a realistic path to OTel-native GenAI observability looks like.

Then the harder question: your agent just deleted a database. What does your telemetry actually tell you? Non-deterministic systems don’t leave obvious footprints, and most teams discover that at the worst possible time.
Speakers
avatar for Adriana Villela

Adriana Villela

Principal Developer Advocate, Dynatrace
Adriana Villela is a blogger, host of the Geeking Out podcast, CNCF Ambassador, OpenTelemetry Community Manager, and maintainer of the OpenTelemetry End User SIG. By day, she focuses on Observability and OpenTelemetry, as a Principal Developer Advocate at Dynatrace. By night, she... Read More →
avatar for Kasper Borg Nissen

Kasper Borg Nissen

Principal Developer Advocate, Dash0
Kasper is a CNCF Ambassador, former KubeCon+CloudNativeCon Co-Chair, Golden Kubestronaut, KCD Organizer, and CNCG Group Organizer. He co-founded Cloud Native Nordics to unite meetups across the region. At Dash0, he helps make observability easy for developers by advocating for better... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

11:55 CEST

Building Trust in the AI Era: Agent-to-Agent Communication With DIDs and VCs - Alexander Shcherbakov, DSR Corporation
Friday October 9, 2026 11:55 - 12:35 CEST
As AI moves from isolated chatbots to autonomous agent ecosystems, the "identity problem" becomes a critical security bottleneck. How does an agent verify the legitimacy of a requestor before executing a sensitive task? Traditional API keys are insufficient for dynamic, decentralized agent interactions.
This session explores a cutting-edge extension to the Linux Foundation A2A protocol that leverages Decentralized Identifiers (DIDs) and Verifiable Credentials (VCs) to establish high-assurance trust and bridges the gap between Decentralized Identity standards and AI, creating a secure backbone for the next generation of agent interoperability.
We will dive into the technical design of integrating OpenID for Verifiable Presentations (OID4VP) into agent communication flows. Attendees will learn how this proposed extension moves beyond static credentials to enable granular, verifiable Authentication (AuthN) and Authorization (AuthZ) for autonomous tasks. Beyond the protocol basics, we will analyze different patterns for VC presentation—comparing interactive vs. automated flows—and evaluate diverse wallet options, ranging from cloud-based agent wallets to secure edge implementations.
Speakers
avatar for Alexander Shcherbakov

Alexander Shcherbakov

Head of Digital Trust Labs, DSR Corporation
Ph.D. in Mathematics. Master of Applied Mathematics and Computer Science.
Extensive experience in Blockchain, DLT, Self-sovereign Identity (SSI).
Significant contribution to open source. Maintainer and contributor of popular LF open-source projects (Hyperledger/OWF/Indy/Hiero).
Extensive experience speaking at international conferences: LF Open Source Summit North America 2026, LFDT Member Summit 2026, Hyperledger Global Forum 2020, Hyperledger Bootcamp 2019, Internet Identity Workshop 2021... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
Club H (Floor 1)
  Digital Trust

11:55 CEST

Edge AI on Linux -- The Software - Karim Yaghmour, Opersys inc.
Friday October 9, 2026 11:55 - 12:35 CEST
AI is inexorably puncturing into our daily lives in some way, shape or form. Up to now, cloud-based LLMs have been the most notable incarnations. And yet, our daily lives contain a slew of devices that remain, for now, of the "dumb" variant. As AI technology evolves, matures and gradually commoditizes, several underlying forces, which we'll examine, will increasingly push such functionality into edge devices. This will be especially true of Linux-grade devices that, on the surface, would seem to have the requisite capabilities to support AI-grade stacks.

This talk will examine the AI software stacks available to build edge AI devices based on Linux-grade systems, especially the seemingly infinite functionality permutations made possible by generative AI. While there have been several “open weights” models with licensing constraints, the recent introduction of the Gemma 4 family (under ASL), which includes models specifically targeted at IoT, is a game changer and likely a taste of things to come. We’ll survey available models and engines, such as llama.cpp and ollama, and how to build real systems with them while accounting for in-the-field challenges.

2nd of two companion talks.
Speakers
avatar for Karim Yaghmour

Karim Yaghmour

CEO, Opersys inc.
Karim has been an active member of the open source community since the mid-90s. He pioneered the world of Linux tracing with the Linux Trace Toolkit and introduced Adeos, one of the first nanokernels/hypervisors for Linux. He is widely known for his O'Reilly books: "Building Embedded... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

11:55 CEST

The Little-Known Mechanism for Securely Parameterizing Systemd Services - Lennart Poettering, Amutable
Friday October 9, 2026 11:55 - 12:35 CEST
In this talk I'd like to discuss the "systemd Credentials" concept, which was introduced back in systemd v250 and became a powerful mechanism for parameterizing Linux systems and services.

These credentials can be passed into systems and services, can be authenticated and encrypted by TPMs. They can be acquired from SMBIOS, via Cloud IMDS services, the UEFI System Partition, or local file systems and IPC. They have a well-defined life-cycle, and can be securely inherited down the process, container and VM hierarchy.

We'll compare them with other ways to parameterize systems and services, such as the kernel command line or environment blocks, and explain why systemd's credentials are often the much better approach.
Speakers
avatar for Lennart Poettering

Lennart Poettering

Chief Engineer, Amutable
Lennart is a systemd creator & maintainer. He's also the Chief Engineer @ Amutable.
Friday October 9, 2026 11:55 - 12:35 CEST
Panorama Hall (Floor 1)
  Linux

11:55 CEST

Look MA, No GPUs! Experiment and Develop LLMs Without GPU Support - Alexon Oliveira, Red Hat
Friday October 9, 2026 11:55 - 12:35 CEST
It's hard to experiment, let alone develop applications, for LLMs when access to GPUs is restricted. But what if you could do your development on CPUs? This session demonstrates how to deploy vLLM on a local Kubernetes cluster using Kind and Podman Desktop, running entirely on a CPU-only laptop.

The presentation covers building a minimal environment, deploying vLLM containers, and running inference against models like Gemma-3 and Qwen2.5. A live benchmark comparison between vLLM and llama.cpp reveals when each runtime excels across different model sizes and hardware profiles. The session then extends the workflow to production-grade serving with KServe, including autoscaling and model lifecycle management.

Attendees will learn how to deploy and test vLLM locally without GPUs or cloud resources, understand when to choose vLLM versus llama.cpp based on model size and hardware, and extend a local setup to production-grade serving with KServe.
Speakers
avatar for Alexon Oliveira

Alexon Oliveira

Senior Principal Technical Account Manager, Red Hat
Alexon works as a Senior Principal Technical Account Manager at Red Hat focusing on Infrastructure and Management, Integration and Automation, Cloud Computing, Storage, and AI Solutions. He also contributes to produce and enhance documentation, knowledge-base articles, blog posts... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
Forum Hall (Floor 2)
  Open AI & Data

11:55 CEST

From Vulnerability Debt To Autonomous Remediation: Building a Self-Healing Container Image Pipeline - Priyanka Bettadapura, Microsoft
Friday October 9, 2026 11:55 - 12:35 CEST
Managing vulnerabilities across large fleets of container images remains a persistent challenge in cloud-native environments. In our platform, patching a single critical image often required several engineer-days of manual effort, creating remediation backlogs and compliance risk.
To address this, we built a self-healing vulnerability remediation pipeline using open source technologies across the container lifecycle. This session presents the architecture behind the system, including automated dependency updates with Dependabot, reproducible image rebuilds with DALEC, continuous OS-level patching using Project Copacetic, and deployment validation through staged rollout pipelines.
We will share the engineering decisions, trade-offs, and lessons learned while reducing remediation time from days to minutes and eliminating approximately 90% of manual patching effort. We will also discuss integrating an AI-assisted remediation agent for complex fixes and the safeguards used to validate and govern AI-generated changes in production environments.
Speakers
avatar for Priyanka Bettadapura

Priyanka Bettadapura

Senior Software Engineer, Microsoft
Priyanka Bettadapura is a Software Engineer at Microsoft focused on cloud-native security, platform engineering, and software supply chain resilience. Her work centers on automating vulnerability remediation for containerized workloads through reproducible builds, dependency management... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
Club E (Floor 1)

11:55 CEST

A Safety BOM Is a Contract: Producing and Consuming the SPDX Functional Safety Profile - Tobias Kästner, inovex GmbH & Nicole Pappler, AlektoMetis
Friday October 9, 2026 11:55 - 12:35 CEST
SPDX 3.1's Functional Safety profile recently grew to model a safety case end to end: requirements and their refinement, verification, pass/fail evaluations, evidence, and assumptions of use. It standardizes how a safety case is exchanged, but not how one is produced, nor what a consumer does with one received. We demonstrate SEGkit, a prototype, open-source, project-agnostic engine that extracts a design and evidence graph from content repositories to recompute a verdict over the graph—a judgment recomputed from content, not merely recorded—and detects which evidence goes stale as code evolves; in this talk we also show how we plan to use it within Zephyr to automate safety evidence creation. This makes SEGkit interesting to projects maintaining their safety BOM as well as downstream users who want to work with one. For the latter case we argue a received BOM is best consumed as a contract—its requirements and evidence being guarantees and its assumptions the conditions the consumer must discharge against its own case. Lastly, we talk about what the profile might add for machine-checkable discharge: assumptions as checkable conditions, linked to the guarantees they constrain.
Speakers
avatar for Nicole Pappler

Nicole Pappler

Senior Safety Expert, AlektoMetis.com
Nicole has worked in different projects developing safety relevant embedded software before starting as an independent assessor.
With now more than twenty years of experience in the industry, she supported several customers to show their compliance with safety, security and quality standards. Currently she is utilizing her experience regarding the development of highly reliable software to enable open source... Read More →
avatar for Tobias Kästner

Tobias Kästner

Safety Architect, Zephyr Project, inovex GmbH
A physicist by training, Tobias Kaestner has long been fascinated by where the physical and digital worlds meet. He began as a software team lead in a medical device start-up and has since spent 15+ years in the industry. As a solution architect for Medical IoT at inovex GmbH he helps... Read More →
Friday October 9, 2026 11:55 - 12:35 CEST
Club A (Floor 1)
  Safety-Critical Software

12:15 CEST

A Tour of the New EKF2 - Mathieu Bresciani, Auterion
Friday October 9, 2026 12:15 - 12:35 CEST
EKF2 is the heart of PX4's navigation, and over the past few years it has quietly received a series of improvements that make it more accurate, more robust, and easier to work with. In this talk I'll walk through the most significant ones. We'll start with a short recap of the filter's architecture, then cover the move to a proper error-state formulation, along with its symbolic derivation and code generation using SymForce. We'll then see how this makes it easy to add a new state or measurement, as we did for the terrain state. From there we'll turn to round-earth navigation, paired with a position-dependent gravity model, which replaces the flat-earth assumptions to support long-range and high-latitude flight. We'll also look at how the Joseph-stabilized covariance update not only makes the filter more numerically stable, but also lets us perform partial updates, which we rely on heavily in the magnetometer and optical-flow fusion. Finally, we'll look ahead at the next changes coming to EKF2 and some of the ideas we're exploring.
Speakers
avatar for Mathieu Bresciani

Mathieu Bresciani

Staff GNC Engineer, Auterion
Mathieu Bresciani is a Flight Control Engineer specialized in Guidance, Navigation and Control (GNC). Currently working at Auterion for the last 8 years, Mathieu spends most of his time improving and developing flight control algorithms for PX4. Member of the PX4 Dev Team, Mathieu... Read More →
Friday October 9, 2026 12:15 - 12:35 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

14:00 CEST

Lightning Talk: 97% of MCP Tools Have Quality Defects & Here's How We Measured Them - Om Shree, Shreesozo
Friday October 9, 2026 14:00 - 14:10 CEST
Silent failures in MCP tool invocation aren't random. They trace back to a single root cause: tool descriptions that are too vague for agents to reliably select the right tool.
A SAIL Research study of 856 tools across 103 MCP servers found 97% have at least one quality defect, 56% fail to clearly state what the tool does, and 89% provide no guidance on when not to use it. A second study of 10,831 servers confirmed that well-written descriptions get selected 260% more often, improving task success rates by ~6 points.
Working with the Glama founder, I developed TDQS (Tool Definition Quality Score) : an open-source framework scoring MCP tools across six dimensions: Purpose Clarity, Usage Guidelines, Behavioral Transparency, Parameter Semantics, Conciseness, and Contextual Completeness.
This talk covers how TDQS was built, what scoring thousands of real-world servers revealed, and how the open-source community can adopt it as a quality standard for MCP tool authorship.
Speakers
avatar for Om Shree

Om Shree

Founder & MCP Infrastructure Researcher, Shreesozo
I'm the founder of Shreesozo, an AI content studio focused on MCP and agentic AI. I've written 100+ technical pieces for Glama.ai and Gentoro, covering everything from protocol internals to real-world agent deployments. I run MCP Weekly, published on YouTube (1.2K subscribers) and... Read More →
Friday October 9, 2026 14:00 - 14:10 CEST
Forum Hall (Floor 2)
  Open AI & Data

14:00 CEST

Adding ESP32/Xtensa Silicon and Custom Boards To PX4 - Henry Kotzé, AutonoSky
Friday October 9, 2026 14:00 - 14:20 CEST
This talk will introduce a new MCU architecture that PX4 only recently supported: the Xtensa ESP32. Using it as a walk-through, we'll demonstrate the software components needed to add your own custom board, contribute to or expand existing MCU architecture support, and highlight how PX4's compile process is designed to be agnostic to the underlying MCU architecture.

Some highlights will be:
How PX4 interacts with NuttX at a low level, and why that relationship is central to bringing up new hardware

The role of the High Resolution Timer (HRT) in PX4's timekeeping, and what it takes to implement it for a new architecture

The difference between Menuconfig and boardconfig, and when to use each when defining your board's peripherals and pin allocation

How PX4's build system sets up the compilation environment for NuttX, and how to configure it for your specific board

How PX4 is designed to be MCU-agnostic, and what that means in practice when working at the boundary between PX4 and NuttX
Speakers
avatar for Henry Kotzé

Henry Kotzé

Lead Engineer, AutonoSky
Henry, from South Africa, holds an MSc in augmenting classical controllers with neural networks and aims to specialise in control systems and estimation. He has implemented airship controllers in PX4 and now works at Autonosky on drone solutions for GPS-denied environments. In his... Read More →
Friday October 9, 2026 14:00 - 14:20 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

14:00 CEST

Why We Fixed It Upstream: A Telco Perspective - Kashif Khan, Ericsson & Jan Melen, Ericsson Software Technology
Friday October 9, 2026 14:00 - 14:40 CEST
Working in telco infrastructure means regulatory compliance isn't optional. When a CVE drops, we can't wait a quarter. We can't backport locally. We have to fix it upstream, and we have to do it fast. This constraint forced us to ask harder questions about how we collaborate with open source projects.

At Ericsson we maintain bare metal Kubernetes using Metal3, Cluster API, and Ironic. Over the past few years, we've learned that regulatory pressure actually makes us better engineers. It forced us to build real relationships with upstream maintainers, contribute more thoughtfully, and think long term instead of short term.

This talk explores what changed in how we work with upstream projects when we couldn't carry local patches. We'll talk about the specific practices that work when your infrastructure depends on fast, reliable upstream collaboration. You'll hear about what changed in how we communicate with maintainers, how we structure our releases, and what we learned about contributing upstream that applies whether you're bound by regulation or not.
Speakers
avatar for Kashif Khan

Kashif Khan

Maintainer | Co-Chair CNCF TAG Infrastructure | Principal Open Source Architect, Ericsson
Kashif Khan is a co-chair of CNCF TAG Infrastructure and maintainer of the CNCF project Metal3.io for 6 years. He works as an open source Architect for Ericsson Software Technology, Finland. He holds a PhD in Computer Science. Kashif is a research and open source enthusiast and his... Read More →
avatar for Jan Melen

Jan Melen

General Manager, Ericsson Software Technology
Jan Melén is an expert in networking, open-source software, and cloud technologies, with a career spanning over two decades. He is a staunch advocate for Free and Open-Source Software (FOSS) adoption within Ericsson and the broader community he engages with.

Since 2019, Jan has led a team dedicated to CNCF open-source projects, contributing to Ericsson's K8s distribution, and fostering an "upstream-first" culture. He oversees Ericsson’s open-source contributions and collaboration with CNCF... Read More →
Friday October 9, 2026 14:00 - 14:40 CEST
Club H (Floor 1)
  Digital Trust

14:00 CEST

Embedded in RISC-V: One Year of Android, Yocto, and Beyond - Trevor Gamblin & Guillaume La Roque, BayLibre
Friday October 9, 2026 14:00 - 14:40 CEST
The RISC-V ecosystem is maturing so rapidly that it's often hard to keep track, especially in the world of embedded systems. Now that RISC-V platforms meeting the "general-purpose" RVA23 specification - which mandates the vector and hypervisor extensions, among others - are available, this rate of change will only increase. We've been working hard on supporting RISC-V from the bottom up through Android, the Yocto Project, the Linux kernel, and we've even helped enable the Python ecosystem for AI at the edge. We want to share our experiences with our peers so that they can help contribute, avoid common pitfalls, and build great projects with our favorite new computer architecture. To do so, we'll cover everything we've done over the past year, what we're most excited about, and where we think the most challenging aspects of supporting RISC-V in embedded systems remain. We hope that this will be an inspiring roadmap for others looking to join the RISC-V community on its journey forward.
Speakers
avatar for Guillaume La Roque

Guillaume La Roque

Embedded Linux/Android Developer, BayLibre
I'm an Embedded Software Engineer at BayLibre, working on low-level systems software such as Linux, Android, and U-Boot. I focus on board bring-up and platform support, from the bootloader to the kernel, with a growing interest in RISC-V.
avatar for Trevor Gamblin

Trevor Gamblin

Senior Software Engineer, BayLibre
Trevor Gamblin is an embedded Linux developer at BayLibre. He is a contributor to many projects but is especially focused on the Yocto Project, the Linux kernel, and the RISC-V ecosystem. He has a background in wireless communication systems and physics.
Friday October 9, 2026 14:00 - 14:40 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

14:00 CEST

Keeping Track of Resources in the Kernel - Overview and Pitfalls of Resource Management Mechanisms - Bartosz Golaszewski, Qualcomm
Friday October 9, 2026 14:00 - 14:40 CEST
While C is a spartan language by design and, as such, doesn't offer any automatic memory management, the linux kernel over the years has acquired several mechanisms that attempt to make it easier for developers to keep track of resources and control their lifetime.

These mechanisms use C compiler extensions for scope-based memory management, count object references, or rely on control flow provided by the lower-level subsystem code. They can also be an arbitrary mixture of multiple approaches.

As the C compiler by definition is unable to enforce ownership or reference counting and scope correctness, the users of these helpers must still leverage them correctly and respect the API contract.

The kernel has struggled with object lifetime issues for decades now and, while there are legitimate issues with the design of certain subsystems, some of these issues resulted from incorrect use of the kernel resource management APIs. A good example of this is scheduling devres actions for devices that will never be bound to drivers.

This talk will present different resource management mechanisms in the kernel along with examples of how to use them correctly and what mistakes to avoid.
Speakers
avatar for Bartosz Golaszewski

Bartosz Golaszewski

Linux Kernel Engineer, Qualcomm
Bartosz Golaszewski has over 16 years of engineering experience in the embedded systems domain ranging from low-level, real-time operating systems, through the linux kernel up to user-space plumbing, libraries and build systems. Bartosz has contributed hundreds of patches to a wide... Read More →
Friday October 9, 2026 14:00 - 14:40 CEST
Panorama Hall (Floor 1)
  Linux

14:00 CEST

Sustainable Communities - Risks and Remedies - Ildiko Vancsa, OpenInfra Foundation
Friday October 9, 2026 14:00 - 14:40 CEST
Whether you care about open source projects for the success of your business or to retain your basic human right to access digital technology, it is in your interest to understand the risks these communities face and what you can do to mitigate them.

This presentation will provide you with a list of risk factors, from bad practices to mindset, that imapct the sustainability of open source communities. The talk will provide details of studies and real-life experiences to outline why certain behaviors, practices and approaches, most often without any bad intentions, are harmful to the open source ecosystem.

You will also receive tools and actionable steps to improve the sustainability of the open source projects you care about. The session will also give you ideas how to implement practices into your workflow, whether you are relying on open source software as a buiness or as an individual.
Speakers
avatar for Ildiko Vancsa

Ildiko Vancsa

Director of Community, OpenInfra Foundation
Ildikó is working for the OpenInfra Foundation as Director of Community. She is the Community Manager for the StarlingX and the Kata Containers projects, and a co-leader of the OpenInfra Edge Computing Group. Ildikó is an evangelist of open collaboration and is using her experience... Read More →
Friday October 9, 2026 14:00 - 14:40 CEST
Conference Hall (Floor 4)

14:00 CEST

The PVC Must Die: How a Workflow Engine Rethought Data Sharing With Trusted Artifacts - Vincent Demeester, Red Hat
Friday October 9, 2026 14:00 - 14:40 CEST
When a CI/CD pipeline runs each step as a separate Kubernetes Pod, those Pods need a way to pass data to one another. Tekton chose the obvious Kubernetes-native answer: a shared persistent volume. Clone code in step one, build it in step two, both read from the same disk. Simple.

It wasn't. Shared volumes meant pinning Pods to the same node, which broke autoscaling. Users hit storage limits, leaked volumes after failures, and spent more time debugging infrastructure than building pipelines. Each fix created new edge cases.

Then a different question: what if steps didn't share a disk at all? What if each step uploaded what it produced, and the next downloaded and verified it, with cryptographic hashes at every handoff? That's Trusted Artifacts. The shared volume disappears, and in its place you get a verifiable chain of trust: every handoff is hashed, signed, and traceable. A storage problem became a security feature.

This talk traces that journey: the design that seemed right, the years of workarounds, and the moment the team stopped fixing the plumbing and rethought the architecture. It's for anyone who's wondered whether to keep patching a leaky abstraction or tear it out.
Speakers
avatar for Vincent Demeester

Vincent Demeester

Senior Principal Software Engineer, Red Hat
I'm a french developer 🐻, Gopher 🐹, sysadmin 🐺, factotum 🦁, free-software fan 👼 and unicode lover 🐸. I'm working at Red Hat 🎩 as a senior principal software engineer, previously at Docker 🐳 and Zenika 🐯. I am a maintainer of the docker project (moby/moby... Read More →
Friday October 9, 2026 14:00 - 14:40 CEST
Club E (Floor 1)

14:00 CEST

Amalgamation - Tom Burdick, Infineon Technologies
Friday October 9, 2026 14:00 - 14:40 CEST
Amalgamation is a build strategy used by projects like sqlite3 that combines C sources files into a single source file for various reasons. One such reason is to give the compiler greater visibility across the program for performance gains. sqlite3 claims 5-10% net performance gains in doing so.

Does applying the technique to parts of Zephyr net us any gains? If so why and where, and what are the trade offs involved?
Speakers
avatar for Tom Burdick

Tom Burdick

Principal Software Engineer, infineon Technologies
I've been involved in the Zephyr project for close to 8 years now. I started as someone looking for a faster way to get BLE working for a product, finding Zephyr to make this trivial compared to the vendor SDK at the time. I spent the prior 5 years at Intel working to make Zephyr... Read More →
Friday October 9, 2026 14:00 - 14:40 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

14:10 CEST

Lightning Talk: Real Observability for Self-Hosted LLMs on Ubuntu - Shardul Deshpande, Canonical
Friday October 9, 2026 14:10 - 14:20 CEST
Running LLMs near devices or in constrained edge environments changes the observability problem. A small model can answer successfully while still being unusable: first token arrives too late, prompts burn scarce CPU/RAM budget, output is malformed, or gateway/model-selection errors hide behind green Linux and container metrics.

This session walks through a reproducible, CPU-first Ubuntu demo for resource-constrained self-hosted LLMs. It uses small Ollama models (llama3.2:1b and qwen3.5:2b) on the same CPU workload with MicroK8s, Juju, COS Lite, Tempo, a FastAPI OpenAI-compatible gateway, and Canonical's Charmed OpenTelemetry Collector. The gateway emits OpenTelemetry GenAI spans, metrics, and trace-correlated logs; Prometheus, Loki, Tempo, Grafana, and Alertmanager turn them into an LLM golden-signals view.

Using recorded normal, slow, expensive, error, and low-quality scenarios, attendees will see how time-to-first-token, token usage, traces, alerts, and quality signals reveal whether a local model is useful within tight compute constraints. The model comparison shows why embedded and edge AI decisions need measured latency/cost/quality trade-offs, not just 'the model runs.'
Speakers
avatar for Shardul Deshpande

Shardul Deshpande

Software Engineer, Observability Stack, Canonical
Shardul Deshpande works at Canonical on the Observability Stack (COS), building practical demos around observability, Kubernetes, and self-hosted AI infrastructure. His work connects Ubuntu, MicroK8s, Juju, OpenTelemetry, and Grafana-based operations so teams can measure whether AI... Read More →
Friday October 9, 2026 14:10 - 14:20 CEST
Forum Hall (Floor 2)
  Open AI & Data

14:20 CEST

7 MCP Servers, 50+ Tools, Zero Duplicate Code: A 5-Minute Architecture Tour - Harika Chebrolu, IBM
Friday October 9, 2026 14:20 - 14:30 CEST
We had a problem: every new integration meant writing the same code twice—once for our React dashboard, once for our AI assistant. JIRA, TestRail, Jenkins, GitHub—the duplication was unsustainable.

MCP changed everything. In this lightning talk, I'll show how we built 7 MCP servers that now power both our dashboard AND our AI agents from a single source of truth. 50+ tools, used daily by Dev, QE, and Management teams.

In 5 minutes, you'll see:

- The architecture: FastAPI as a unified backend → MCP Servers → External APIs (JIRA, TestRail, Jenkins, GitHub, GSheets, Release Calendar, Risk Predictor)
- The pattern: Thin MCP tools that call centralized APIs—one integration, two consumers
- Real metrics: 10+ hours/week saved per engineer; release tracking, regression monitoring, and production health checks unified.
- Why MCP wins: AI agents and dashboards evolve independently while sharing the same data layer.

We eliminated duplicate code, reduced maintenance burden, and shipped faster. All code is open source.
Speakers
avatar for Harika Chebrolu

Harika Chebrolu

Software Engineer | Multi-Agent Systems, IBM
Harika Chebrolu is a software engineer building autonomous systems for infrastructure operations. She architected a multi-agent platform managing 200+ storage nodes and extracted MCP servers for safe, interoperable infrastructure tooling. Her open-source work includes multi-agent... Read More →
Friday October 9, 2026 14:20 - 14:30 CEST
Forum Hall (Floor 2)
  Open AI & Data

14:20 CEST

PX4 on Open Silicon: Flight Control and AI Workloads on Multi-Core RISC-V - Afonso Oliveira, AiNekko
Friday October 9, 2026 14:20 - 14:40 CEST
While PX4 is open source, the underlying hardware often remains tied to proprietary vendor black boxes. This creates a gap for PX4 developers and sovereignty-sensitive applications that need an inspectable full stack all the way down to silicon.

This session presents CORE-ET, a fully open-source RISC-V platform that can scale from a 16-hardware-thread Erbium configuration to systems with more than 2000 cores. We will show a simulation demo of Erbium running PX4 alongside onboard AI: PX4/control runs on two hardware threads, while the remaining 14 run workloads such as vision, depth, VIO, or object detection.

We will discuss the porting structure, real-time capabilities, and measurements needed to show flight control running alongside local inference. The result is a path toward drones where both software and hardware are open and inspectable.
Speakers
avatar for Afonso Oliveira

Afonso Oliveira

Computer Engineer, AiNekko
Building RISC-V systems across specs, boot ROMs, HALs, emulators, firmware, RTOS, and OS. Currently at Ainekko, working full-stack on custom RISC-V AI accelerators. Previously at Synopsys, contributed to RISC-V tooling, specifications, Zephyr support, and ML quantization research... Read More →
Friday October 9, 2026 14:20 - 14:40 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

14:50 CEST

Entering Linux Upstream-First: How a Newcomer MCU Vendor Builds Its Kernel Development Processes - Gustavo Henrique Nihei, Espressif Systems
Friday October 9, 2026 14:50 - 15:30 CEST
Most silicon vendors claim to support upstream Linux. Few show what it actually takes to sustain that when customer deadlines and upstream changes compete for limited engineering resources. Espressif Systems, the company behind the ESP32 wireless MCUs and open-source ecosystems around them, is debuting in embedded Linux, but no stranger to open source communities: ESP-IDF is widely supported, and its engineers are active contributors to Zephyr RTOS, including a member on the TSC. This is a candid look at how a newcomer builds its development process with the community in mind.

We walk through the concrete processes we established: a branching strategy and sync cadence that track each stable kernel release, a pipeline for preparing and submitting patches to mainline, and immutable, reproducible release branches. We also cover the organizational model, a chip verification team that confirms silicon works quickly and a separate upstreaming team that refactors drivers to upstream standards, collaborating continuously to shrink the porting gap. The supporting infrastructure rounds this out with CI across multiple build systems, a LAVA CI board farm, and QEMU for pre-hardware testing.
Speakers
avatar for Gustavo Henrique Nihei

Gustavo Henrique Nihei

Staff Engineer, Espressif Systems
Gustavo Henrique Nihei is a Staff Engineer at Espressif Systems working on Linux platform support for Espressif SoCs, across the embedded Linux stack: kernel driver development targeting mainline, build system integration (Buildroot, Yocto, OpenWrt), and hardware-in-the-loop CI with... Read More →
Friday October 9, 2026 14:50 - 15:30 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

14:50 CEST

RDMA on the Edge - Michael Jost, ETH Zurich
Friday October 9, 2026 14:50 - 15:30 CEST
Processing large volumes of sensor data (e.g. Cameras, IMUs, Radar, etc.) on embedded hardware for real-time machine learning inference requires two critical performance metrics: high throughput and minimal latency.

Remote Direct Memory Access (RDMA) which originated in high-performance computing and cloud datacenters was designed for this use case . By enabling direct host-to-host memory transfers without kernel or CPU intervention, RDMA delivers throughputs exceeding 100 Gbps with microsecond-level latency.

In this talk, we present a complete, open-source sensor acquisition pipeline that brings RDMA to an embedded device. We demonstrate how camera data is acquired on an AMD Kria KR260, packetized into RDMA frames entirely within the FPGA fabric, and transmitted over Ethernet to a Jetson AGX Orin platform. The goal of this talk is that attendees will leave with a practical understanding of RDMA’s benefits in the embedded sector and have access to a powerful, open-source tool for high-performance data transfer.
Speakers
avatar for Michael Jost

Michael Jost

Researcher, ETH Zurich
Michael Jost received a B.Sc. from the University of Applied Sciences Rapperswil, Switzerland, and a M.Sc. in Electrical Engineering and Information Technology from the Swiss Federal Institute of Technology, ETH Zürich, Switzerland, in 2012 and 2017, respectively. He spend several... Read More →
Friday October 9, 2026 14:50 - 15:30 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference

14:50 CEST

Yocto: From Scarthgap To Wrynose, 2 Years of LTS Evolution - Jérémie Dautheribes, Bootlin
Friday October 9, 2026 14:50 - 15:30 CEST
Yocto Project has become the de-facto standard for embedded Linux build systems, and its LTS releases serve as the key milestones driving industry adoption and long-term platform decisions.

Wrynose (6.0), released in May 2026, is the new LTS: teams and community members running Scarthgap in production are now facing the migration question.

This talk covers what actually changed over those two years: build tooling and configuration workflow, CVE and SBOM handling in the context of the upcoming EU Cyber Resilience Act, toolchain updates, and the breaking changes that affect existing layers and distro configurations. By the end of this talk, attendees should have a clear picture of what it takes to migrate from Scarthgap to Wrynose in a real production environment.
Speakers
avatar for Jérémie Dautheribes

Jérémie Dautheribes

Embedded Linux and Kernel engineer and trainer, Bootlin
Jérémie Dautheribes is an embedded Linux engineer and trainer at Bootlin since 2022.
He has been working with Yocto for 5 years.
His expertise also extends to BSP maintenance and evolution.
As a trainer, he has also helped many people improve their skills on the Yocto Project and Embbeded Linux in general... Read More →
Friday October 9, 2026 14:50 - 15:30 CEST
South Hall 3 B (Floor 3)
  Embedded Linux Conference

14:50 CEST

Anatomy of a Mainline Linux Driver - Neil Armstrong, Linaro
Friday October 9, 2026 14:50 - 15:30 CEST
Getting a driver into mainline Linux is a great step, but it is very different from downstream development. In downstream, the people writing the driver are often not the ones making the final product. Because of this, they have to implement 100% of the hardware features. But in the end, maybe only 60% of these features are actually used by product integrators. This creates dead code and increased driver complexity.

In this talk, I will show you the anatomy of a mainline Linux driver and guide you on how to write it for the upstream tree inclusion. We will see how to write generic code that is easy for the community to maintain in the long term. We will talk about using and extending existing kernel frameworks instead of making custom control paths or abusing current interfaces, which helps reduce ecosystem fragmentation. For embedded systems, we will also see how to make clean and extensible Device Tree bindings.

I will explain why we need to drop untestable downstream features to keep the code clean. Finally, we will look at how to format and check your patchset with tools like checkpatch, smatch, and new AI tools like Sashiko to ensure high kernel quality.
Speakers
avatar for Neil Armstrong

Neil Armstrong

Senior Linux Engineer, Linaro
Neil joined Linaro in September 2022 to work full-time on Qualcomm Upstreaming of their high-end SoC platforms.
Neil has been hacking on embedded platforms since he was 16 years old, from Casio Calculators to Phones platforms in the last months.
He maintains the Amlogic Linux & U-Boot baseport, Linux DRM Bridge & Panel codebase. In addition to Qualcomm, Neil regularly contributes to the Linux Kernel and U-Boot supporting the Amlogic SoCs support and DRM codebase... Read More →
Friday October 9, 2026 14:50 - 15:30 CEST
Panorama Hall (Floor 1)
  Linux

14:50 CEST

CRA Compliance Paths and Where the Real Responsibility Sits - Madalin Neag, OpenSSF/The Linux Foundation
Friday October 9, 2026 14:50 - 15:30 CEST
The EU CRA is now law, yet confusion persists across the software ecosystem. Many developers still fear personal liability for upstream contributions, while organizations struggle to understand what compliance actually requires.
This talk clarifies the four CRA compliance pathways: Self-Assessment, Standards, 3rd party Conformity Assessment, and the EUCC, and explains how they apply across the software supply chain.

We demystify the CRA’s approach to open source, focusing on OSS stewards such as foundations and legal entities, and their limited obligations compared to manufacturers. A key message: upstream contributors and individual maintainers have no direct CRA compliance responsibilities.
We also examine supply chain security implications, including the need for stronger upstream-downstream collaboration, better dependency transparency, and clearer security ownership at integration points. Misinterpretation of CRA roles risks shifting compliance burden incorrectly upstream, undermining ecosystem resilience.
Attendees will leave with a clear understanding of CRA responsibility boundaries, compliance routes, and the role of open source in a secure European software supply chain.
Speakers
avatar for Madalin Neag

Madalin Neag

EU Policy Advisor, OpenSSF/The Linux Foundation
Madalin is the EU Policy Advisor at OpenSSF, working at the intersection of cybersecurity, open source software, and European technology policy. He helps connect open source technical communities and policymakers, supporting the development of practical regulatory frameworks, aligning... Read More →
Friday October 9, 2026 14:50 - 15:30 CEST
South Hall 1 A (Floor 1)

14:50 CEST

X-Road: The Open Source Project That Runs Countries (And What It Can Teach Your Project) - Gbemisola Mary Oladetoun, Fleetfox
Friday October 9, 2026 14:50 - 15:30 CEST
X-Road started as Estonia's internal government data exchange layer. Today it is open source, deployed in over 20 countries including Finland, Iceland, and Japan, and maintained by a cross-border foundation. I build software on top of X-Road every day in Tallinn, so I interact with this system as a practitioner, not just someone who read about it.

This talk covers: the governance model that allows countries with different legal systems to contribute to the same codebase. How X-Road handles backwards compatibility when your users are governments that cannot afford breaking changes. The trust model that lets citizens see exactly who accessed their data. And what this journey from closed government software to open source infrastructure teaches other projects about sustainability.

I am not an X-Road maintainer. I am a software engineer who uses it in production and an HCI researcher who thinks about how people interact with systems like this. Most talks about X-Road come from the people who built it. This one comes from someone who lives with it.
Speakers
avatar for Gbemisola Mary Oladetoun

Gbemisola Mary Oladetoun

Full Stack Developer, Fleetfox
Gbemisola Oladetoun is a Full Stack Developer and HCI researcher at Tallinn University, Estonia. Originally from Nigeria, she has built AI-powered products serving 1,500+ users across three African countries and now builds fleet software for the European market. Her talks blend technical... Read More →
Friday October 9, 2026 14:50 - 15:30 CEST
Conference Hall (Floor 4)

14:50 CEST

Zephyr-Based VIRTIO Backend on Xen: From Tiny Driver Domains To Real Hardware Integration - Hiroshi Tokita, Indivisual
Friday October 9, 2026 14:50 - 15:30 CEST
Linux-based Xen Driver Domains are powerful, but they increase the trusted computing base and add complexity to systems that need tight isolation, fast startup, and auditable software components.

This talk updates the Zephyr-based VIRTIO backend for Xen, an effort to run selected VIRTIO backend functions in small, purpose-built Zephyr driver domains. The goal is to preserve Xen’s proven architecture while enabling a finer-grained model: separate lightweight domains for network, storage, or platform-specific services.

Over the past half year, the project has moved toward platform integration. Upstreaming work has progressed, real-hardware demos are being developed on Renesas R-Car V4H, and integration with SoDeV, an SDV platform by Automotive Grade Linux, is underway.

The session will cover the architecture, current upstream status, and obstacles to using it across platforms. Attendees will leave with a realistic view of where Zephyr-based driver domains can reduce the trusted computing base, what challenges remain, and how to contribute to lightweight open-source driver domains for edge and automotive systems.
Speakers
avatar for Tokita Hiroshi

Tokita Hiroshi

Embedded system developer, Indivisual
TOKITA Hiroshi has been working at Fujitsu as an embedded systems developer for 20 years.
He mainly has knowledge of in-vehicle Linux, especially in the infotainment area.
He is also involved in the Japanese translation of KiCad, and is involved in development and writing activit... Read More →
Friday October 9, 2026 14:50 - 15:30 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

15:40 CEST

Let Your CI Catch Your Stack Overflows, Before They Hit Your Testing or the Field - Paul Würtz, Independent & Juan-Felipe Gutiérrez-Gómez, Technical University of Braunschweig
Friday October 9, 2026 15:40 - 16:00 CEST
Static program analysis can help us to save a lot of time to catch bugs before they cause real-world issues. Inspired by the already in west integrated puncover target I want to present and discuss my advances and experiments and how this especially can help during code review and development as part as the CI pipeline in application development to correctly configure necessary stack sizes and get warned on potential stack overflows.

Further ideas around how this could also benefit zephyr development are presented like checking subsystem enabled threads stack sizes across multiple boards.
Speakers
avatar for Paul Würtz

Paul Würtz

Full-time hacker on parental leave - otherwise Embedded Software Engineer :), Visiting as a Hobbyist
Studied electrical engineering and computer science. Worked across IoT, packaging, tractors and battery storage on embedded applications for the last 8 years.
avatar for Juan-Felipe Gutiérrez-Gómez

Juan-Felipe Gutiérrez-Gómez

Research Assistant, Technical University of Braunschweig
Juan Gutierrez received the B.Sc. degree in Electronic Engineering in 2013, the M.Sc. degree in Telecommunications Engineering in 2019, and the Ph.D. degree in Electrical Engineering in 2026, all from Universidad Nacional de Colombia. His current research interests include embedded... Read More →
Friday October 9, 2026 15:40 - 16:00 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

15:40 CEST

When the LLMs Come Knocking: Surviving AI-Powered Vulnerability Reports - Vincent Demeester, Red Hat
Friday October 9, 2026 15:40 - 16:20 CEST
In early 2026 our vulnerability inbox suddenly exploded. Tekton, the Kubernetes-native CI/CD framework we maintain, received more security reports in four months than in all the previous years combined: detailed, with working reproducers and CVSS scores. Many were genuinely valid. They were also, overwhelmingly, AI-generated.

LLM-powered research has changed the game. Tools now audit codebases systematically and surface real bugs humans missed for years: a path traversal reading arbitrary files from the controller pod, an SSRF exfiltrating cloud credentials, a JSON injection enabling RCE. These aren't hallucinations, and they arrive faster than a small team can patch, disclose, and backport.

But the flood carries noise too: variants of fixed CVEs, reports that misunderstand the threat model, duplicates. The challenge has shifted from "find vulnerabilities" to "triage an AI-accelerated firehose without your disclosure process collapsing."

This is an honest, in-progress survival guide from maintainers living through it: how triage holds up under pressure, how we separate signal from noise, what we got right, and what we got wrong.
Speakers
avatar for Vincent Demeester

Vincent Demeester

Senior Principal Software Engineer, Red Hat
I'm a french developer 🐻, Gopher 🐹, sysadmin 🐺, factotum 🦁, free-software fan 👼 and unicode lover 🐸. I'm working at Red Hat 🎩 as a senior principal software engineer, previously at Docker 🐳 and Zenika 🐯. I am a maintainer of the docker project (moby/moby... Read More →
Friday October 9, 2026 15:40 - 16:20 CEST
Club H (Floor 1)
  Digital Trust

15:40 CEST

Who Watches the Watcher? Hardening eBPF in Production Security Deployments - Hanshal Mehta, Independent
Friday October 9, 2026 15:40 - 16:20 CEST
eBPF has become the backbone of modern Linux security tooling. Cilium, Tetragon, Falco, etc they all depend on eBPF's ability to hook kernel execution paths and enforce policy without a kernel patch or reboot. But there's a question the community has been slow to ask: who secures eBPF itself?
Working on bpfman, an eBPF program manager, exposed me to the trust assumptions baked into how programs get loaded, pinned, and granted kernel access. This talk covers what I found concrete attack surfaces that show up in real deployments, not theory.

We'll cover: the verifier's historical CVEs and what they reveal about its actual threat model, privilege escalation through CAP_BPF and unprivileged eBPF in distros that ship with it enabled, what program signing protects and what it quietly doesn't, and LSM hooks on BPF program loading that most teams aren't using yet.
The second half: BPF token scoping, how Ubuntu and Fedora are locking down the attack surface without breaking legitimate tooling,and a threat model checklist you can apply to your own eBPF deployment the same week.
If you're running eBPF-based security tooling in production, this is the talk I wished existed before I started.
Speakers
avatar for Hanshal Mehta

Hanshal Mehta

Open Source Developer, Self
Open-source developer contributing to projects across the cloud-native and security space including OpenTelemetry, bpfman, Glasskube, Cyclops, and BuildSafe. Currently at SecurableAI working on open-source security tooling. Deep interest in performance engineering, cloudsecurity... Read More →
Friday October 9, 2026 15:40 - 16:20 CEST
Panorama Hall (Floor 1)
  Linux

15:40 CEST

When Coding Agents Cheat: Measuring the Security of AI-Generated Code With an Open Benchmark - Luca Compagna, Endor Labs & Danqing Wang, Carnegie Mellon University
Friday October 9, 2026 15:40 - 16:20 CEST
Vibe coding is now the norm, and more open-source code is AI-generated. But is it secure?

We present the Agent Security League, an open leaderboard built on SusVibes (200 real-world tasks, 108 OSS projects, 77 CWEs). Unlike benchmarks frontier labs cite to showcase progress, SusVibes evaluates what developers actually use: a harness coupled with an LLM, not the model alone. Across 15+ combinations — GPT-5.5, Gemini 3.5, Fable 5 — with agents like Cursor and Claude Code, functional correctness can exceed 80%, yet our best fair security score is 29%.

This means ~7/10 working AI patches leave the bug open.

Strikingly, even models (e.g., Fable 5) that lead model-only benchmarks score no better on security once wrapped in a real agent.

Agents also cheat: early on they reverse-engineered fixes from git history, inflating scores up to 42×. Our 3-layer pipeline—prompt hardening, workspace sanitization, LLM-based anti-cheating eval—nearly killed that, but memorization of upstream fixes from training data persists.

We show cheating examples, share fair results, what actually improves security, and argue anti-cheating and contamination controls must be standard for agentic benchmarks.
Speakers
avatar for Luca Compagna

Luca Compagna

Security Researcher, Endor Labs
Security Research Consultant at Endor Labs, after more than 15 years at SAP, researching and innovating in the areas of security testing, security engineering, and AI.

Regular presenter at industrial and community venues (OWASP) and leading security conferences, he has published... Read More →
avatar for Danqing Wang

Danqing Wang

PhD, Carnegie Mellon University
Danqing is a Ph.D. candidate at LTI in Carnegie Mellon University (CMU), advised by Prof. Lei Li. Her research focuses on Strategic Planning and Reasoning in LLM Agents, including agent collaboration, agent competition, agent communication and agentic safety.
Friday October 9, 2026 15:40 - 16:20 CEST
Forum Hall (Floor 2)
  Open AI & Data

15:40 CEST

A Strategic Outlook for Digital Commons: Technology, Communities, and Governance - Nick Gates, OpenForum Europe
Friday October 9, 2026 15:40 - 16:20 CEST
Sovereignty rhetoric is creating new openings for commons-based approaches to organising around, governing, and investing in public digital infrastructure that works for a plurality of Member States. This is partly what is proposed via ongoing initiatives like the Digital Commons EDIC and the Open Internet Stack. That said, the European Commission risks absorbing them while adopting largely statist, protectionist, or purely industrial framings that hollow out their meaning.

This talk navigates that tension directly, drawing on research from the NGI Commons project to offer a clear-eyed account of where things stand and what communities, researchers, and advocates can do about it. This talk begins by mapping these concepts with precision: what each means, how they relate, and why the distinctions matter for anyone trying to advance a genuinely commons-based agenda as part of these existing initiatives.

From there, the talk examines the current EU policy moment: the sovereignty turn, the competitiveness and industrial policy logic now dominating digital debates, the AI race framing, and what these shifts mean for the digital commons and the EU’s broader tech sovereignty ambitions.
Speakers
avatar for Nick Gates

Nick Gates

Senior Policy Advisor, OpenForum Europe
Nick Gates is a Policy Advisor at OpenForum Europe, where he leads OFE’s work on the NGI Commons initiative and manages projects related to open source research and policy. Nick has significant experience in digital government, particularly around open source, public financial management... Read More →
Friday October 9, 2026 15:40 - 16:20 CEST
Conference Hall (Floor 4)

15:40 CEST

Zephyr on the Big Core: Real-Time on the I.MX93 Cortex-A55 With Zephyr - Ryan Erickson, Ezurio
Friday October 9, 2026 15:40 - 16:20 CEST
The NXP i.MX93 almost always gets the same software answer: Linux on the Cortex-A55, an RTOS on the Cortex-M33. But what if you don't need Linux?

Zephyr formally supports the i.MX93 A55 cores upstream (imx93_evk/mimx9352/a55 and /a55/smp), including GICv3 interrupts, PSCI power management, SMP, and the full peripheral set — Ethernet, CAN-FD, USB, MIPI-DSI, and more. Boot time drops, interrupt latency decreases, and memory footprint shrinks. And unlike other RTOS solutions, there are no per-unit royalties.

This session covers two things: first, a technical deep-dive into how Zephyr runs on an arm64 application core and looking at various peripherals and proving they work. Second, a live walkthrough of authoring a Zephyr BSP for the Ezurio Nitrogen93 SMARC — an i.MX93 SOM in the SMARC 2.2 form factor — covering DTS porting, pinctrl, driver enablement, and hardware validation.

Attendees leave with a clear framework for when Zephyr on Cortex-A beats Linux or a proprietary RTOS, and a practical template for porting any i.MX9x board to Zephyr.
Speakers
avatar for Ryan Erickson

Ryan Erickson

Staff Software Engineer, Ezurio
Ryan Erickson has been developing wireless products at Ezurio for 17 years. His areas of expertise include Zephyr development and maintenance (modem drivers), Wi-Fi, BLE, Bluetooth Classic, 802.15.4, cellular, IoT, manufacturing automation, mobile apps, and more.
Friday October 9, 2026 15:40 - 16:20 CEST
South Hall 2 B (Floor 2)
  Zephyr Developer Summit

16:00 CEST

Infected Drones: How Compromised Autonomous Systems Pwn Ground Control Stations - Nick Aleks, ASEC
Friday October 9, 2026 16:00 - 16:20 CEST
Modern drone operations have moved from one pilot, one aircraft to multi-agent autonomous fleets. Dozens and even hundreds of vehicles now fly missions while only a handful of operators supervise from the ground. More drones, fewer ground stations, and the station is where all the value is, the operator, the mission data, a full-blown OS, and even access to other drones.

For years, drone security researchers have focused on attacking the vehicle. I flip the target and show how a single infected drone becomes a beachhead, reaching up the command chain to own the very station meant to control it, and the fleet.

This research audited six popular independent ground-control and middleware projects across the MAVLink ecosystem, Mission Planner, QGroundControl, MAVSDK, MAVProxy, MAVROS, and DroneKit and found the same broken trust boundary in all of them. The result is 14 findings rooted in one systemic flaw, including two novel full remote code execution chains against the operator's own machine.
Speakers
avatar for Nick Aleks

Nick Aleks

Chief Hacking Officer, ASEC
Nick Aleks is a renowned cybersecurity researcher, engineer and author of Black Hat Bash, and Black Hat GraphQL, (as well as the upcoming Drone Hacker's Handbook). Nick Aleks founded ASEC (asec.io) and established DEFCON Toronto (DC416). He has spent over a decade spearheading cybersecurity... Read More →
Friday October 9, 2026 16:00 - 16:20 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

16:30 CEST

Robotics Is Becoming Distributed Systems - Lessons Learned Building Multi-UAV Architectures - Pawel Sawicki, UfoCourier.com
Friday October 9, 2026 16:30 - 16:50 CEST
PX4 and MAVSDK have made controlling individual drones remarkably accessible. Building systems around fleets, however, introduces a different class of challenges.

While developing a distributed multi-UAV architecture, we repeatedly discovered that many problems that initially appeared to be robotics problems were, in fact, distributed-systems problems. Task execution, telemetry aggregation, observability, fault tolerance, and fleet coordination quickly became more important than vehicle control itself.

This talk presents the architectural lessons that emerged from this work. It covers the separation of control and orchestration, the shift from commands to tasks, event-driven architectures, spatial state, and observability.

A recurring theme is that fleet management can be viewed as a space-time scheduling problem involving heterogeneous resources. From this perspective, many challenges beyond individual vehicles are problems of state, scheduling, and coordination.

The session connects PX4 and MAVSDK with ideas from distributed systems and scheduling theory, highlighting reusable patterns for scalable autonomous systems.
Speakers
avatar for Pawel Sawicki

Pawel Sawicki

Founder and CTO, UfoCourier.com
Pawel Sawicki is a Machine Learning Engineer and Software Architect with 15+ years of experience in distributed systems and AI. His work focuses on deep learning, LLM-based systems, and scalable agentic architectures. He combines hands-on experience with modern AI frameworks and cloud-native... Read More →
Friday October 9, 2026 16:30 - 16:50 CEST
South Hall 1 B (Floor 1)
  PX4 Dev Summit

16:30 CEST

Scatter-Gather in Sharded Worlds: Implementing Resilient Cluster Scans Without Starving Shards - Sakshi Nasha, Cohesity & Primanshu Choudhary, GetYourGuide
Friday October 9, 2026 16:30 - 17:10 CEST
Have you ever run a global pattern search or database scan across a large cluster, only to watch your application latency skyrocket and healthy nodes suddenly drop offline?

When applications outgrow a single instance, global data scanning becomes a major distributed systems bottleneck. High-level frameworks try to mask this complexity with simple abstractions, forcing the client driver to execute a "scatter-gather" pattern: fanning out parallel cursor queries to thousands of logical shards and merging the reactive results on the fly. If designed naively, a single slow shard or an unindexed query can exhaust the client's connection pool, leak memory, and starve production read/write traffic.

In this practical, code-focused session, we will open up the engine hood of high-performance drivers using live examples from the Valkey-Glide ecosystem. We will show you how to safely bridge high-level data abstractions down to sharded sockets without risking cascading timeouts.
Come Join us, to build Resilient Cluster Scans Without Starving Shards!
Speakers
avatar for Sakshi Nasha

Sakshi Nasha

Software Engineer, OpenSource Contributor, Cohesity
Sakshi Nasha is a Software Engineer with a passion for building software and driving diversity in tech. An open-source enthusiast and OpenSearch Ambassador, she actively contributes to FOSS communities and speaks internationally on topics including GO, APIs, Security, PostgreSQL and... Read More →
avatar for Primanshu Choudhary

Primanshu Choudhary

Software Engineer 2, GetYourGuide
Primanshu is a Software Engineer at GetYourGuide, working in the Reviews team, he focuses on improving the performance and scalability of reviews system serving 400M+ requests per day with low latencies. He is a database enthusiast who enjoys solving real world problems, applies pragmatic... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
Small Hall (Floor 0)
  Cloud & Orchestration

16:30 CEST

Fast, Safe, and Asleep: Bringing Runtime PM To Modern IOMMUs - Pranjal Shrivastava, Google
Friday October 9, 2026 16:30 - 17:10 CEST
Modern IOMMUs are deployed across wildly different environments. In enterprise servers, they require massive scalability, heavy virtualization support, and a zero-tolerance policy for lock contention. On the other hand, as these high-performance IOMMUs increasingly find their way into mobile, automotive, and edge SoCs, aggressive dynamic power management becomes mandatory.

Using arm-smmu-v3 as a case study, this talk explores the design challenges in integrating the Linux Runtime Power Management (RPM) framework into high-performance IOMMU drivers. Modern IOMMU drivers operate primarily with in-memory data structures, rely on HW-shared queues and are designed for lockless, concurrent access, often from strictly atomic contexts.

The RPM framework’s reliance on locks fundamentally clashes with this lockless architecture and atomic execution constraints. This session walks through the design choices evaluated while implementing runtime power management for a modern IOMMU driver, without sacrificing its lockless, concurrent, and efficient behavior.

The talk is backed by the arm-smmu-v3 RPM Series upstream: lore.kernel.org/all/[email protected]/
Speakers
avatar for Pranjal Shrivastava

Pranjal Shrivastava

Software Engineer - III, Google
Pranjal is a Linux kernel engineer at Google and an active upstream contributor. He focuses on virtualization and networking, with a background in low-level software/firmware development. Outside of work, Pranjal divides his processing power between making music and enjoying great... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
South Hall 3 A (Floor 3)
  Embedded Linux Conference

16:30 CEST

A Surprisingly Hard Question: How Much Memory Does My System Use? - Richard Weinberger, sigma star gmbh
Friday October 9, 2026 16:30 - 17:10 CEST
When everything runs smoothly, memory usage is just another metric. But when out-of-memory situations strike, or you are tasked with cutting a workload's RAM in half, it suddenly becomes the most important metric in your system.

While Linux exposes dozens of memory-related counters, answering basic questions is notoriously difficult. Developers and system administrators often struggle to pinpoint exactly how much memory the system is actually using, what the true footprint of a single application is, and how much memory that application can safely consume before causing issues.

In this talk, Richard will demystify Linux memory metrics and break down how the OS organizes memory across kernel and userspace.

Attendees will learn how to accurately read and make sense of Linux memory counters, giving them a better understanding of how internal memory management actually works. The session will also cover practical techniques for debugging memory-related issues and OOM kills, leaving the audience with actionable ways to optimize their application memory footprints.
Speakers
avatar for Richard Weinberger

Richard Weinberger

CTO, sigma star gmbh
Richard Weinberger is co-founder of sigma star gmbh where he offers consulting services around Linux and IT security. Upstream he maintains various subsystems of the Linux kernel such as UserModeLinux and UBIFS. Beside of low level and security aspects of computers he enjoys growing... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
Panorama Hall (Floor 1)
  Linux

16:30 CEST

From Hours To Minutes: Building Production-Ready Agentic Systems on Kubernetes - Purnanand Kumar & Dipali Chatterjee, IBM
Friday October 9, 2026 16:30 - 17:10 CEST
Agentic AI systems are rapidly evolving from research experiments into production workloads. However, while building a proof-of-concept agent can take only a few hours, building a reliable, scalable, and observable agentic platform remains a significant challenge.

This session explores how modern open source technologies can be combined to build production-ready agentic systems on Kubernetes. We will walk through a complete architecture that includes large language models, agent orchestration, retrieval systems, tool execution, memory management, observability, and infrastructure automation.

Using technologies such as Kubernetes, Kubeflow, LangGraph, Model Context Protocol (MCP), vector databases, and open-source serving frameworks, we will demonstrate how to move from a simple agent prototype to a resilient platform capable of supporting enterprise-scale workloads.
Speakers
avatar for Purnanand Kumar

Purnanand Kumar

Advisory software engineer, IBM
Led the development efforts in creating robust and scalable back-end systems for various projects, focusing on storage domain solutions. Leveraged Golang to build high-performance applications, optimizing data processing and storage operations. Collaborated with cross-functional teams... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
Forum Hall (Floor 2)
  Open AI & Data

16:30 CEST

Scaling Zephyr Hardware CI Across Continents - Anıl Özrenk, Analog Devices
Friday October 9, 2026 16:30 - 17:10 CEST
Most Zephyr CI talks focus on Twister with a single board. This talk covers what happens when your hardware spans continents, operating systems, and team boundaries, and every PR still needs to test against all of it.

Our Zephyr firmware targets proFPGA systems programmed via Windows-only scripts, Protium emulators on Linux servers with J-Links on Windows machines, MAX32xxx boards on Linux, and virtual platforms. Discrete teams — hardware, virtual platform, proFPGA, Protium, bare-metal, Debugger Scripts, and Zephyr — each own a different piece on different platforms.

We built CI that unifies all of this so a developer opening a PR gets feedback from real hardware regardless of board, country, or OS. The talk covers device-specific flashing automation, reusable workflows scaling from PRs to nightly runs, observability beyond pass/fail (memory footprint tracking, runner dashboards, test analytics), and the technical interfaces between teams that make it sustainable.

Every pattern is in production today, testing across 28+ boards in multiple countries and different toolchains on every pull request.
Speakers
avatar for Anıl Özrenk

Anıl Özrenk

Embedded Software Engineer, Analog Devices
I'm an Embedded Software Engineer at Analog Devices with five years of experience in embedded systems. I build and maintain the hardware test infrastructure for ADI's Zephyr-based embedded platforms.
I'm passionate about the Zephyr ecosystem and its testing framework, Twister. I focus on pushing Twister's capabilities to production scale. Making it work across heterogeneous hardware, multiple operating systems, and distributed teams... Read More →
Friday October 9, 2026 16:30 - 17:10 CEST
South Hall 2 A (Floor 2)
  Zephyr Developer Summit

16:50 CEST

Optimizing AI for Resource-Constrained Edge Devices - Pavel Macenauer, NXP Semiconductors
Friday October 9, 2026 16:50 - 17:10 CEST
Eliminating cloud dependency and making connectivity optional is becoming essential for applications where data privacy, low latency, and reliability are critical. Running AI locally allows the system to respond immediately and keeps sensitive data on device which guarantees security. However, the cost is high. It introduces significant challenges due to computing, memory, and power constraints.

This session explores optimization techniques and algorithms mandatory for deploying vision, audio, and language models on resource-constrained edge devices. We will dive into methods such as quantization, model compression, and graph optimization, and show how to balance latency, accuracy, and energy efficiency.

Using widely adopted open-source frameworks like PyTorch and TensorFlow, along with intermediate ecosystems such as ONNX, we will demonstrate how to efficiently deploy from training a model to highly optimized edge inference. We will provide insight into making AI models smaller, faster, and more efficient with minimal impact on their accuracy, allowing them to run on microprocessor and microcontroller-class devices.
Speakers
avatar for Pavel Macenauer

Pavel Macenauer

R&D Manager, NXP Semiconductors
An R&D software director and architect at NXP Semiconductors leading teams developing tools, runtime libraries, and enabling AI on Edge-class devices. Both professionally and out of human curiosity, Pavel always developed software visualizing the World around us. Initially through... Read More →
Friday October 9, 2026 16:50 - 17:10 CEST
South Hall 3 C (Floor 3)
  Embedded Linux Conference
 
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.