Tuomo Tanskanen

Tuomo Tanskanen

Principal Security Developer at Ericsson

Helsinki, Finland

Actions

Tuomo is a telecom software engineer with 20+ years of hands-on experience across major industry giants. With vast and versatile experience in product security, incident response, and penetration testing, he is currently a Principal Security Developer at Ericsson and is Maintainer and Security Lead for Metal3.io, CNCF Incubating project. Tuomo drives contributions to FOSS projects that enhance security, compliance and scalability, and is deeply involved in AI SecOps.

Area of Expertise

  • Information & Communications Technology

Topics

  • Kubernetes Security
  • Cloud Security
  • Security
  • Kubernetes
  • open source

AI Found a 0-Day in Metal3. What Happens Next?

AI-powered vulnerability discovery is here, and in 2026 it is no longer just a noise generator. These pipelines can uncover real 0-days, but a plausible finding is only the start. Maintainers must still verify the claims and determine their actual impact.

As Metal3's Security Lead, I am the primary analyzer and coordinator for incoming vulnerability reports. I've also built an AI vulnerability discovery pipeline, giving me insight into both sides of the process. Bare-metal provisioning is a useful case study: modern cloud-native architecture meets legacy drivers, deprecated protocols and external integrations. Vulnerabilities are rarely proven by a simple automated crash.

We examine what these pipelines can produce, where their reports fall short and what maintainers look for during triage. Users will see the work behind a security response, while researchers and contributors will learn what turns pipeline output into an actionable report.

Lessons Learned from Metal3's Journey to Incubation

After 5 years in the CNCF sandbox, Metal3.io has successfully moved to incubation. This talk shares our journey from niche idea to the go-to mature Kubernetes native bare metal lifecycle management solution, detailing the final push that resulted in a smooth TOC due diligence process. We'll discuss practical approaches to governance consolidation, security documentation, and adopter engagement when public references are limited. Learn how we used CNCF community tools for honest self-assessment, addressed company diversity concerns, and turned potential blockers into documented strengths.

Key insights include finding the right balance between thorough preparation and pragmatic readiness, engaging adopters who prefer to stay private, and demonstrating project maturity after an extended sandbox period. Also, you'll learn more about our plans and steps forward towards Graduation. Useful for projects planning their own incubation journey.

Defending Bare-Metal: Lessons Learnt from AI Security Analysis of Metal3 and OpenStack Ironic

AI-powered vulnerability discovery is here, and in 2026 it is no longer a noise generator either. These pipelines offer a powerful way to uncover 0-days in almost any software project. However, they introduce a distinct challenge: FOSS maintainers are now drowning in reports that are increasingly complex to analyze, especially as low-hanging fruit is rapidly plucked.

In this session, maintainers and security team members from Metal3.io and OpenStack Ironic projects share how they used an AI-based vulnerability analysis tool to uncover hidden issues. This domain is often riddled with legacy drivers and requirements to support deprecated protocols, yet built on modern cloud-native architectures where a vulnerability proof is rarely an easily automated, executable crash. For project maintainers, we will share our candid analysis of the typical AI report shortcomings, what to look for in triage, and how to deal with the incoming flow without burning out.

Understanding the Real Attack Surface of Agentic AI

At the time of writing, OpenClaw is making headlines every day with new security issues, but also success stories and achievements. There are all kinds of recommendations and suggestions floating around for how to secure your AI agents. Some are confidently explaining that their agent runs on a separate machine that is not exposed to the internet. Others claim that they are safe because their agent has only read access to their emails. Are they really?

In this talk, we break it down and analyze the whole attack surface. We cover everything from prompt injection and memory poisoning to supply chain security and sandbox configurations. The talk maps OpenClaw against OWASP Top 10 for Agentic Applications and provides concrete analysis of each failure mode.

The goal is to learn by example and raise awareness of both new and familiar attack vectors introduced by increasingly autonomous AI agents. These tools have democratized software development in a way we’ve never seen before—which is exciting, but also means we must re‑establish security fundamentals for new audiences, new workflows, and new risks. Attendees will leave with a clearer mental model of where the real dangers lie and how to think about securing agentic systems in practice.

Tuomo Tanskanen

Principal Security Developer at Ericsson

Helsinki, Finland

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top