BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//programme.europython.eu//europython-2026//talk//ZSRZPC
BEGIN:VTIMEZONE
TZID:CET
BEGIN:STANDARD
DTSTART:20001029T040000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:CET
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:CEST
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-europython-2026-ZSRZPC-0@programme.europython.eu
DTSTART;TZID=CET:20260714T134500
DTEND;TZID=CET:20260714T151500
DESCRIPTION:This tutorial will introduce fundamentals of security research 
 and CodeQL when looking for security vulnerabilities in software. We'll sh
 are how to look for vulnerabilities in code and how to use static analysis
  to help us find sources\, sinks and vulnerabilities.\n\nUsing an example 
 of a vulnerability in an open source project that the speaker has found\, 
 CVE-2024-32022\, we will walk through how we could detect it manually by r
 eading code\, learn how to write CodeQL\, and by the end write a CodeQL qu
 ery to find this vulnerability and its variants.\n\n## To workshop attende
 es:\nWorkshop repository is available at: https://gh.io/europython-codeql\
 n\nTo do before the workshop: install VS Code and set up the workshop repo
 sitory following the instructions: https://github.com/sylwia-budzynska/cod
 eql-workshop/?tab=readme-ov-file#option-a-local-installation. It should ta
 ke 5-10 minutes.\n\nIf you can’t/don’t want to set up VS Code\, you ca
 n create a codespace of the workshop repository which automatically downlo
 ads and installs everything we need for running CodeQL by following these 
 instructions: https://github.com/sylwia-budzynska/codeql-workshop/?tab=rea
 dme-ov-file#option-b-github-codespace\n\nDuring the workshop I will set up
  the codespace and do all the exercises together with you. The workshop ma
 terials have a lot of reference material\, cheatsheets\, etc. Don’t worr
 y about it for now. It’s there for you to go back to during the hands-on
  session in case something wasn’t fully clear.
DTSTAMP:20260713T152726Z
LOCATION:S4B
SUMMARY:Introduction to security research. Find a CVE with CodeQL. - Sylwia
  Budzynska
URL:https://programme.europython.eu/europython-2026/talk/ZSRZPC/
END:VEVENT
BEGIN:VEVENT
UID:pretalx-europython-2026-ZSRZPC-1@programme.europython.eu
DTSTART;TZID=CET:20260714T153000
DTEND;TZID=CET:20260714T170000
DESCRIPTION:This tutorial will introduce fundamentals of security research 
 and CodeQL when looking for security vulnerabilities in software. We'll sh
 are how to look for vulnerabilities in code and how to use static analysis
  to help us find sources\, sinks and vulnerabilities.\n\nUsing an example 
 of a vulnerability in an open source project that the speaker has found\, 
 CVE-2024-32022\, we will walk through how we could detect it manually by r
 eading code\, learn how to write CodeQL\, and by the end write a CodeQL qu
 ery to find this vulnerability and its variants.\n\n## To workshop attende
 es:\nWorkshop repository is available at: https://gh.io/europython-codeql\
 n\nTo do before the workshop: install VS Code and set up the workshop repo
 sitory following the instructions: https://github.com/sylwia-budzynska/cod
 eql-workshop/?tab=readme-ov-file#option-a-local-installation. It should ta
 ke 5-10 minutes.\n\nIf you can’t/don’t want to set up VS Code\, you ca
 n create a codespace of the workshop repository which automatically downlo
 ads and installs everything we need for running CodeQL by following these 
 instructions: https://github.com/sylwia-budzynska/codeql-workshop/?tab=rea
 dme-ov-file#option-b-github-codespace\n\nDuring the workshop I will set up
  the codespace and do all the exercises together with you. The workshop ma
 terials have a lot of reference material\, cheatsheets\, etc. Don’t worr
 y about it for now. It’s there for you to go back to during the hands-on
  session in case something wasn’t fully clear.
DTSTAMP:20260713T152726Z
LOCATION:S4B
SUMMARY:Introduction to security research. Find a CVE with CodeQL. - Sylwia
  Budzynska
URL:https://programme.europython.eu/europython-2026/talk/ZSRZPC/
END:VEVENT
END:VCALENDAR
