All of the recordings from VulnCon have been posted to YouTube. Here's a playlist:

#VulnCon #VulnCon2024 #VulnCon24

https://www.youtube.com/watch?v=mDctsoWtiTY&list=PLWfD9RQVdJ6db44oVABnI_JhIFEumoQnZ

VulnCon 2024 was a rousing success, with around 600 total attendees - ~350 in-person, and ~250 remote (the official numbers should be out soon). That blew away our planning targets by a wide margin. The positive feedback we've received has been overwhelming. There were, of course, some issues, but for a first year event it went shockingly smoothly, IMHO.

VulnCon 2025 will be back at the McKimmon Center in Raleigh, NC April 7-11, 2025. I suspect we're going to max out the capacity cap on that venue in 2025 for in-person attendees, but we don't want to grow too big, too fast.

Thanks to all who attended, and special thanks to the fantastic organizing committee who pulled this off with only five months of planning!

#VulnCon #VulnCon24 #VulnCon25

https://openssf.org/blog/2024/03/29/vulncon-2024-wrap-up-securing-the-ecosystem-through-global-cooperation/

VulnCon 2024 Wrap-up: Securing the Ecosystem through Global Cooperation – Open Source Security Foundation

Was hoping for more commentary and shared ideas from #VULNCON24 - if you're there, let us know what you're thinking about!

Today is the last day to register for VulnCon 2024:
---
The CVE Program and FIRST are co-hosting VulnCon 2024 on March 25-27, 2024, at the McKimmon Center in Raleigh, North Carolina, USA. This event replaces our usual CVE Global Summit for Spring 2024. The purpose of VulnCon is to collaborate with various vulnerability management and cybersecurity professionals to develop forward-leaning ideas that can be taken back to individual programs for action to benefit the vulnerability management ecosystem.

If you haven’t already registered, we encourage you to register now for in-person ($250.00 US) or virtual ($100.00 US) attendance as registration closes on March 11, 2024. The VulnCon 2024 registration form is here.

We have a very exciting agenda with numerous interesting talks scheduled! The full agenda with multiple tracks for each of the three days is here. Below are a few of the CVE-specific talks:

 Revising the CVE CNA Operational Rules: AMA
 Reducing Ratio of Reserved But Public CVEs
 The Trials and Tribulations of Bulk Converting CVEs to OSV
 CVE Is The Worst Vulnerability Framework (Except For All The Others)
 Panel Discussion: It is a Tale as Old as Time…. a CNA, the NVD, and a CVE Consumer Walk Into a Bar. Hilarity Ensues, Right?
 CNA Challenges From a National CERT Perspective

For detailed descriptions of all talks, attendance information, and all other event details, visit the CVE/FIRST VulnCon 2024 conference page hosted on the FIRST website.

We look forward to seeing you at this inaugural event!
---
https://www.first.org/conference/vulncon2024/

#VulnCon #VulnCon24

CVE/FIRST VulnCon 2024 & Annual CNA Summit

FIRST — Forum of Incident Response and Security Teams

The VulnCon 2024 program schedule was posted today: https://www.first.org/conference/vulncon2024/program

Registration remains open - it's a hybrid event, so you can attend in person or remotely.

CVE/FIRST VulnCon 2024 & Annual CNA Summit

Raleigh (NC), US - March 25th-27th, 2024 | McKimmon Center | #VULNCON24

Program Overview: CVE/FIRST VulnCon 2024 & Annual CNA Summit

FIRST — Forum of Incident Response and Security Teams

Come to CVE/FIRST VulnCon 2024!

Raleigh (NC), US - March 25th-27th, 2024 | McKimmon Center | #VULNCON24

https://www.first.org/conference/vulncon2024/

Call for papers is open until January 31st, and registration for attendees is open now.  I'm one of the organizers, from the CVE.org side.

CVE/FIRST VulnCon 2024 & Annual CNA Summit

FIRST — Forum of Incident Response and Security Teams