Loading…
OpenSSF Community Day Japan 2025
June 18, 2025 | Tokyo, Japan
Learn More and Register To Attend

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for OpenSSF Community Day Japan 2025 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

Please note: This schedule is automatically displayed in Japan Standard Time. To see the schedule in your preferred timezone, please select it from the drop-down menu at the bottom to the right.

The schedule is subject to change.
Type: 5 Minute Presentations clear filter
Wednesday, June 18
 

10:15 JST

OpenSSF Community Enhancement in Japan - Taku Shimosawa, Hitachi, Ltd.
Wednesday June 18, 2025 10:15 - 10:20 JST
The Japan Chapter of OpenSSF aims to promote the open-source security to the Japanese community. Muuhh and Taku will present briefly the recent activities done by the Japan Chapter: the meet-ups, the translation of the best practices, and the SLSA workshop. We will also share the feedback from the Japanese community, and the upcoming plan for our activities. We welcome anyone interested in the open-source security in Japan, and we are eager to seek the potential collaboration with the global open-source security community.
Speakers
avatar for Taku Shimosawa

Taku Shimosawa

Chief Researcher, Hitachi, Ltd.
Taku Shimosawa is a chief research at Hitachi, Ltd. He has contributed to the Hyperledger community, and has recently joined OpenSSF.
Wednesday June 18, 2025 10:15 - 10:20 JST
Apollon A

12:10 JST

Secrets in Public Git Repos: Why It Keeps Happening and How To Fix It - Arpit Jain, Independent Security Researcher
Wednesday June 18, 2025 12:10 - 12:15 JST
Every day, thousands of API keys, credentials, and tokens are accidentally leaked into public Git repositories, putting users and organizations at massive risk. In this lightning talk, I'll quickly break down why secret sprawl happens despite increasing awareness. I’ll highlight real-world cases like Trufflehog's recent discovery of over 12,000 live API keys inside DeepSeek's AI model training data, demonstrating how leaked secrets can silently persist and escalate risks. I'll demonstrate how simple open source tools like Gitleaks, Trufflehog, and Git pre-commit hooks can detect and prevent exposures. Attendees will leave with immediate, practical steps to stop secret leaks in their repositories — before attackers find them.
Speakers
avatar for Arpit Jain

Arpit Jain

Security Researcher | Open Source Contributor, Independent Security Researcher
Arpit Jain is a security researcher and active open source contributor, focusing on supply chain security, secure coding, and ethical AI. He has contributed security patches to multiple open source projects on GitHub. Arpit’s mission is to help new engineers gain visibility in the... Read More →
Wednesday June 18, 2025 12:10 - 12:15 JST
Apollon A
 
  • Filter By Venue
  • Filter By Type
  • Timezone

Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.