Arthur Rasmusson is Director of AI Architecture at LightBits Labs, where he works on the KV-cache data plane, Inferra by LightBits Labs - tiering and securing LLM cache state across HBM, DRAM, NVMe, and the network to raise tenant density and extend context length.
His career sits at the intersection of GPU/IO virtualization and large-scale inference: he was previously Engineering Co-Founder of Arc Compute, Principal AI Engineer at Weka and Machine Learning Engineer on Cohere’s Model Efficiency team.
Arthur is a contributor to the open source cache technology and storage ecosystem - author of NVIDIA TensorRT-LLM’s “KV Cache GPUDirect Storage” feature (PR #3209, merged, later moved to NIXL in the NVIDIA Dynamo Stack), Python-Native-libCuFile used in the GPUDirect Storage backend for LMCache/vLLM and creator of Open-IOV.org, a community documenting GPU virtualization, driver, and firmware internals.
- Extending the Chain of Trust into the KV Cache: Hardware-Rooted Confidential Computing for Multi-Tenant Inference
I am a Ph.D. candidate at TU Berlin, Security in Telecommunications (SecT) with Prof. Jean-Pierre Seifert. My research interests mainly lie in Platform Security and Confidential Computing.
In the past, I published research about AMD's Secure Encrypted Virtualization (SEV) at the ACM CCS and presented a jailbreak of Tesla's infotainment system at BlackHat. I am also the maintainer of PSPTool.
- A Practical Security Assessment of DRTM on AMD-based Systems
Daniel Kiper works as a software developer for Oracle. Until recently he was one of GRUB maintainers. He is also (a bit) involved in TrenchBoot development. Earlier he worked on the Xen hypervisor BIOS and UEFI boot, kexec, kdump, makedumpfile, crash tool and memory hotplug development. His experience goes into such areas as *NIX, Linux and Windows servers administration, networking including email and DNS configuration, cryptography and many more. Outside of the work he is tirelessly tinkering with computers, time servers, radio, electronics and real size trains in the Polish Association of Railway Enthusiasts. From time to time he also looks high into the sky and tries to understand why aircrafts do not collide midair. At least not so often as it would be expected...
- UEFI Secure Boot signing certs expire! Will my computer stop booting or why it did not...
Open-hardware, firmware, and embedded developer living in Canada. Administrator at 15h.org. See dodoid.com or message @dodoid:dodoid.com on Matrix.
- Flashkeeper - Manage and Protect your SPI Flash
Hello, I'm Filip Gołaś, an Embedded Firmware Developer at 3mdeb, finishing a master's in informatics specializing in machine learning.
In my spare time I keep a small homelab, sharpen knives, play airsoft, and repair my stuff, since I believe in owning what I bought and paid for. I wouldn't trade in my pet parrot for a better-behaved one, I'd train it, so why replace stuff I can repair?
- How nested EDK2 capsules enable verified open-source firmware updates
Firmware Engineer @ 3mdeb; ~3 years in open source firmware, working mostly with coreboot and EDK2, LinuxBoot/Heads. Interested in Linux kernel development and audio processing.
- TrenchBoot on Intel Alder Lake N: Integrating DRTM into an Open-Source Firmware Stack
I'm a student from TU Berlin and currently writing my master's thesis about DRTM.
- A Practical Security Assessment of DRTM on AMD-based Systems
Hello. I’m Kamil Wcisło, a Systems Engineer specializing in Cloud-Native Embedded Systems and my project, MekOps stands for Microservices, Embedded, and Kernels Operations.
In the modern tech landscape, there is a significant divide. Cloud engineers treat infrastructure as infinite and disposable. Embedded engineers treat hardware as static and specific. I would like to introduce an engineering philosophy that applies the scalability, observability, and orchestration of the Cloud to the rigid, constrained and multi-architectural reality of bare metal.
I build tools that allow physical hardware to be managed with the same agility as a Kubernetes cluster, without sacrificing the performance of C and Rust. To build the next generation of edge computing, you cannot just be an embedded engineer, and you cannot just be a cloud architect. You must own the stack from the Kernel (NuttX/Linux/Rust/C) to the Microservice (Go/Wasm) and finally Operations (Kubernetes).
- Where the Chain of Trust Goes Dark: Extending Verified Boot to Signed Wasm Workloads on Microcontrollers
Security Engineer with over 20 years of experience in waiting on operating systems to compile. Former magician, PC repair tech, street entertainer, trucker, day laborer, telemarketer, web developer, tractor salesman, and burger flipper.
Best known for not owning a smartphone, compromising Japanese hotel robots, finding weak entropy flaws across widely used software, software supply chain security publicity stunts, social activism, and implanting random tech in his body.
Actual specialties include Linux infrastructure security, software supply chain security, cryptographic key management, hardware security modules, secure enclaves, remote attestation, vulnerability assessment & mitigation, PII protection, and web application hardening.
Founder of #!, a decentralized hackerspace, and Distrust, a FOSS-focused high-risk security engineering firm. Previously led sysadmin and security engineering efforts at Accesso, Pebble, BitGo, and Turnkey.
Talk to him about decentralization, social issues, mechanical puzzles, plants, weird animals, lockpicking, home manufacturing, homesteading, or anything even remotely related to security and threat modeling.
Relevant: https://distrust.co https://caution.co https://hashbang.sh https://lance.dev https://stagex.tools
- Verifiable Computing: Connecting trust from bootstrap, to firmware, to runtime
Junior embedded systems engineer at 3mdeb, working on embedded Linux, CI/CD, drivers, and internal tooling - much of it Yocto-based.
Free time goes to electronics, trying out open-source projects for daily use, and posting patches upstream with fixes and features.
- TrenchBoot: measured launch on vendor firmware
Michał Kopeć is a firmware engineer at 3mdeb, an enthusiast of open source and a low level hacker.
At 3mdeb, he has worked on open-source firmware for laptops, network appliances and servers. His recent work includes Intel Boot Guard enablement, Dasharo platform ports, and LinuxBoot integration. He has also worked on UEFI based firmware, discrete GPU enablement, Linux kernel drivers, and Intel TXT enabling.
In his spare time he hacks on coreboot ports for machines in his posession and on Linux graphics drivers.
- Fusing in the Wild: Enabling Intel Boot Guard on Deployed Laptops
Michał Żygowski is a versatile engineer with a strong focus on system firmware. Works as a senior firmware engineer at 3mdeb Embedded Systems Consulting . Active contributor of coreboot and other open-source projects. Core coreboot developer, maintainer of Braswell SoC, PC Engines, Protectli, MSI and Libretrend platforms. Loves travelling and attending conferences, which actively speaks on. Mainly interested in the firmware, security and advanced hardware features.
- The Autonomous Firmware Factory: BenchRack and the Agentic Pipeline Redefining Open-Source Firmware Enablement
- Host Security ID (HSI) on AMD servers today and tomorrow
Piotr Król is an open-source firmware enthusiast and the founder of 3mdeb, established in March 2015. Rooted in the hacker ethos of collaboration and transparency, his work drives innovation in firmware resilience, platform security, and digital sovereignty.
At 3mdeb, Piotr leads projects such as Zarhus OS, a Yocto-based embedded Linux distribution, Dasharo, a downstream coreboot project focused on trustworthiness, privacy, and liberty, and PET (Pace Enterprise Training), a platform for advanced technical education. These initiatives support open development, transparency, the right to repair, and the long-term maintenance of open-source firmware-based systems.
Piotr’s technical focus spans Root of Trust, Secure/Verified/Measured Boot, TPM, UEFI, EDK II, coreboot, U-Boot, Yocto, and Linux. He regularly speaks at major industry events, including FOSDEM, Xen Developer Summit, and the Platform Security Summit, advocating for open-source solutions in platform security.
Committed to community knowledge-sharing, Piotr is also a trainer with OpenSecurityTraining2, contributing free and open learning resources to strengthen the global open-source firmware ecosystem.
- Welcome to BSMConf 2026 Day 2
- Welcome to BSMConf 2026 Day 1
- BSMConf 2026 - Day 1 closing notes
- BSMConf 2026 - Day 2 closing notes
Heads maintainer, Accessible Security evangelist, full time Open Source Firmware R&D, linux plumber by need.
- Boot Chain Security of Heads as a Specialized LinuxBoot Runtime
Udo Steinberg is a Fellow and Co-Founder of BlueRock Security, where he leads kernel architecture with a strong focus on Arm and x86, hardware virtualization, trusted computing, security and performance. He is also the author and maintainer of the open-source NOVA microhypervisor.
Udo studied Computer Science at TU Dresden and has more than 20 years of experience building microkernels and microkernel-based systems.
- NOVA: A Hardware-Anchored Microhypervisor with a Minimal TCB