
Audience at DevOpsDays Zurich
The audience during Beyond SBOMs at DevOpsDays Zurich 2026.
When a single phished NPM maintainer led to 18 compromised libraries—including Chalk and Debug, downloaded billions of times weekly—it proved one thing: SBOMs alone aren’t enough. In this talk, I explore how modern supply-chain attacks unfold and how the next generation of tools—attestations, provenance, and signing—can prevent a repeat of the September 2025 NPM breach.

Delivered at DevOpsDays Zurich 2026.

The audience during Beyond SBOMs at DevOpsDays Zurich 2026.

On stage during the Beyond SBOMs talk at DevOpsDays Zurich 2026.








Selfie with the audience after Beyond SBOMs at DevOpsDays Zurich 2026.

Audience view of the Shai-Hulud section during Beyond SBOMs at DevOpsDays Zurich 2026.


Norse gods on the slides during Beyond SBOMs at DevOpsDays Zurich 2026.

Stage and audience view during the CVE section of Beyond SBOMs.
Available for conferences, workshops, corporate training, and meetups. I can present remotely or travel to your event.