<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>InfoQ - Security</title>
    <link>https://www.infoq.com</link>
    <description>InfoQ Security feed</description>
    <item>
      <title>Presentation: Adopting Memory-Safety and Fine-Grained Compartmentalisation with CHERI</title>
      <link>https://www.infoq.com/presentations/cheri-memory-safety-compartmentalization/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</link>
      <description>&lt;img src="https://res.infoq.com/presentations/cheri-memory-safety-compartmentalization/en/mediumimage/DavidChisnall-medium-1785845255636.jpg"/&gt;&lt;p&gt;David Chisnall discusses how the CHERI hardware architecture redefines pointer safety to solve isolation and sharing challenges. He explains how CHERI enables spatial and temporal memory safety for C/C++, scales down to microcontrollers with CHERIoT, and replaces costly OS-level RPC mechanisms with lightweight, auditable compartmentalization - all without requiring massive codebase rewrites.&lt;/p&gt; &lt;i&gt;By David Chisnall&lt;/i&gt;</description>
      <category>Memory</category>
      <category>Hardware</category>
      <category>C++</category>
      <category>QCon London 2026</category>
      <category>Risk Management</category>
      <category>Performance</category>
      <category>Security</category>
      <category>Transcripts</category>
      <category>Development</category>
      <category>Architecture &amp; Design</category>
      <category>presentation</category>
      <pubDate>Wed, 12 Aug 2026 11:00:00 GMT</pubDate>
      <guid>https://www.infoq.com/presentations/cheri-memory-safety-compartmentalization/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</guid>
      <dc:creator>David Chisnall</dc:creator>
      <dc:date>2026-08-12T11:00:00Z</dc:date>
      <dc:identifier>/presentations/cheri-memory-safety-compartmentalization/en</dc:identifier>
    </item>
    <item>
      <title>Presentation: Leveraging Adversary Emulation for GenAI Red Teaming</title>
      <link>https://www.infoq.com/presentations/emulation-genai/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</link>
      <description>&lt;img src="https://res.infoq.com/presentations/emulation-genai/en/mediumimage/KennedyTorkura-medium-1785396173788.jpeg"/&gt;&lt;p&gt;Kennedy Torkura discusses practical GenAI red teaming techniques to safeguard LLMs and knowledge bases against security threats like data poisoning and LLMjacking on AWS. He explains how engineering leaders and architects can bridge traditional cloud security with MITRE ATLAS frameworks to proactively identify vulnerabilities, implement guardrails, and secure production AI applications.&lt;/p&gt; &lt;i&gt;By Kennedy Torkura&lt;/i&gt;</description>
      <category>Artificial Intelligence</category>
      <category>InfoQ Dev Summit Munich 2025</category>
      <category>Security</category>
      <category>Transcripts</category>
      <category>AI, ML &amp; Data Engineering</category>
      <category>presentation</category>
      <pubDate>Mon, 10 Aug 2026 09:32:00 GMT</pubDate>
      <guid>https://www.infoq.com/presentations/emulation-genai/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</guid>
      <dc:creator>Kennedy Torkura</dc:creator>
      <dc:date>2026-08-10T09:32:00Z</dc:date>
      <dc:identifier>/presentations/emulation-genai/en</dc:identifier>
    </item>
    <item>
      <title>GitHub Hardens npm and Actions Defaults, Drawing Debate over Delays versus Signing</title>
      <link>https://www.infoq.com/news/2026/08/github-npm-actions-defaults/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</link>
      <description>&lt;img src="https://res.infoq.com/news/2026/08/github-npm-actions-defaults/en/headerimage/generatedHeaderImage-1785830307506.jpg"/&gt;&lt;p&gt;GitHub consolidated the npm and Actions changes it shipped from March to July 2026 against supply chain attacks, several of which alter defaults rather than add options. Hacker News discussion focused less on the individual controls than on whether waiting periods are the right instrument, or a substitute for author-side package signing.&lt;/p&gt; &lt;i&gt;By Steef-Jan Wiggers&lt;/i&gt;</description>
      <category>github</category>
      <category>Continuous Delivery</category>
      <category>Open Source</category>
      <category>GitHub Actions</category>
      <category>Automation</category>
      <category>Software Supply Chain</category>
      <category>Security</category>
      <category>DevOps</category>
      <category>Development</category>
      <category>news</category>
      <pubDate>Sat, 08 Aug 2026 07:45:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/08/github-npm-actions-defaults/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</guid>
      <dc:creator>Steef-Jan Wiggers</dc:creator>
      <dc:date>2026-08-08T07:45:00Z</dc:date>
      <dc:identifier>/news/2026/08/github-npm-actions-defaults/en</dc:identifier>
    </item>
    <item>
      <title>Podcast: WebAssembly on the JVM: Feature Evolution, Performance, and the Transition to Endive</title>
      <link>https://www.infoq.com/podcasts/feature-evolution-performance-transition-endive/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</link>
      <description>&lt;img src="https://res.infoq.com/podcasts/feature-evolution-performance-transition-endive/en/smallimage/the-infoq-podcast-logo-thumbnail-1785225703267.jpg"/&gt;&lt;p&gt;Andrea Peruffo discusses the evolution of WebAssembly beyond the browser and its growing role on the server-side JVM. He covers performance advancements in Wasm runtimes, moving from interpreters to efficient JIT compilation, and explores real-world production use cases ranging from edge computing platforms to modular plugin architectures.&lt;/p&gt; &lt;i&gt;By Andrea Peruffo&lt;/i&gt;</description>
      <category>The InfoQ Podcast</category>
      <category>JVM</category>
      <category>Java</category>
      <category>WebAssembly</category>
      <category>Architecture</category>
      <category>Security</category>
      <category>Architecture &amp; Design</category>
      <category>Development</category>
      <category>podcast</category>
      <pubDate>Mon, 03 Aug 2026 11:00:00 GMT</pubDate>
      <guid>https://www.infoq.com/podcasts/feature-evolution-performance-transition-endive/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=Security</guid>
      <dc:creator>Andrea Peruffo</dc:creator>
      <dc:date>2026-08-03T11:00:00Z</dc:date>
      <dc:identifier>/podcasts/feature-evolution-performance-transition-endive/en</dc:identifier>
    </item>
  </channel>
</rss>
