BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//open-source-conference-luxembourg-2026//sp
 eaker//N37WLB
BEGIN:VTIMEZONE
TZID:Europe/Luxembourg
BEGIN:DAYLIGHT
DTSTART:20251007T000000
TZNAME:CEST
TZOFFSETFROM:+0200
TZOFFSETTO:+0200
END:DAYLIGHT
BEGIN:STANDARD
DTSTART:20251026T030000
RDATE:20261025T030000
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20260329T030000
RDATE:20270328T030000
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
SUMMARY:Digital Sovereignty Starts with Vulnerability Data - Cédric Bonho
 mme
DTSTART;TZID=Europe/Luxembourg:20261007T163000
DTEND;TZID=Europe/Luxembourg:20261007T170000
DTSTAMP:20260916T160802Z
UID:pretalx-open-source-conference-luxembourg-2026-Z8RJSL@pretalx.com
DESCRIPTION:Digital sovereignty is often discussed in terms of cloud infra
 structure\, data hosting\, or dependence on large technology providers. Bu
 t there is a more uncomfortable question when it comes to cybersecurity: *
 *who owns vulnerability data?**\n\nWho controls the infrastructure\, ident
 ifiers\, databases\, enrichment\, and models that we rely on to understand
  vulnerabilities? Organizations such as MITRE\, CISA and CVE Program provi
 de critical public infrastructure for the cybersecurity ecosystem\, but ho
 w much of our vulnerability intelligence ultimately depends on external or
 ganizations and services?\n\nVulnerability information is a fundamental bu
 ilding block of cybersecurity\, yet organizations increasingly depend on e
 xternal platforms\, proprietary databases\, closed scoring systems\, and A
 I services to collect\, enrich\, and interpret it.\n\nThis talk explores w
 hat digital sovereignty can mean for vulnerability intelligence. Using the
  open-source Vulnerability-Lookup ecosystem as a case study\, we will look
  at open vulnerability data\, GCVE\, decentralized sources\, and open AI m
 odels and datasets developed with VulnTrain. The goal is to examine what i
 t takes to build a security intelligence stack that can be independently o
 perated\, understood\, reproduced\, and extended.\n\nThe central question 
 is simple: **can we build vulnerability intelligence that we can actually 
 own?**
LOCATION:CyberSecurity
URL:https://pretalx.com/open-source-conference-luxembourg-2026/talk/Z8RJSL
 /
END:VEVENT
END:VCALENDAR
