Dan Horovitz
Dan Horovitz is an experienced Principal Security Researcher, with over 25 years of multidisciplinary security research, security product development and management experience. Dan worked at Intel, McAfee, Checkpoint as well on several security startups for the last 20+ years, doing security product development as well as security assurance, security code review, architecture and design review and security validation. Dan is a life-long hacker, security advocate, he has always had a passion for deconstructing technology. Dan has performed all forms of security assessments but given his developer and management background, he has a dedication to product security assurance, security architecture, security development and security validation. Dan has MBA & B.Sc in computer science from BGU and he's CISSP certified, reached the 3rd Black Belt Security in Intel, highest org. security certification. Dan has authored 35+ patents on privacy and security enhancements and presented papers in different conferences such: BSides, CyberSafe, iSecCon, DefCamp, DTTC, SWPC, Intel System Engineer, Intel TechWeek, QA&Test, INCOSE and MPower (McAfee).
Session
The EU Cyber Resilience Act (CRA) marks a significant shift in how cybersecurity responsibilities are defined for digital products — including software built on open source. While the regulation explicitly protects non-commercial open source development, it also introduces new obligations for organizations that commercialize, distribute, or embed open source software into products placed on the EU market.
This talk explores the implications of CRA for open source communities, maintainers, and organizations using Open Source in their products.
