FOSDEM Timetable Search Bookmarks

 "Making you embedded product CRA compliant" ( 2025 )

Sunday at 14:00, 60 minutes, H.3244, H.3244, BOF - Track C Marta Rybczynska

This BoF will be a place to discuss technical details of making embedded products (using open source) compliant with the CRA (Cyber Resilience Act).

We can chat about: - the technical blueprints (secure defaults, hardening, logging, updates...) - processes (risk assessment, vulnerability reporting) - tools (SBOM, CVEs...)

Sojourner FOSDEM
Related:
2026
  •  0.61 "CRA Compliance in Embedded Systems: A Practical Look from the Yocto Project World"
  •  0.57 "CRA Integration – How FOSS compliance measures support CRA obligations, especially regarding documentation, security updates, and traceability."
  •  0.56 "Implementing the Cyber Resilience Act - engaging with open source"
  •  0.54 "CRA overview for everyone, including projects and smaller organisations"
  •  0.53 "First steps towards CRA conformity. A practical introduction to cybersecurity risk management."
2025
  •  0.54 "Community-driven compliance: The CRA and the Open Regulatory Compliance Working Group"
2024
  •  0.58 "CRA & PLD: CRA conformance for Open Source Projects"
  •  0.57 "Embedded Security 2023"
  •  0.55 "CRA & PLD: [begin workshop] How will the open-source community adapt to the new EU Cyber Resilience Act and Product Liability Directive"
  •  0.54 "CRA & PLD: panel"

Last updated: 2026-03-20

Copyrights:

FOSDEM conference content: licensed under the Creative Commons Attribution 2.0 Belgium Licence.

All content such as talks and biographies is the sole responsibility of the speaker.

All code and other content Apache 2.0 Licensed by Mike Moran