ALL SPEAKERS
SESSIONS
SCHEDULE TBD
KEYNOTE
Secure Your Coding Agent Like It’s Malware
AT A GLANCE
Role
Head of Software Archaeology
Organisation
MaibornWolff GmbH
Category
Community
ABOUT THE SPEAKER
Richard Gross is an IT archaeologist at MaibornWolff with more than ten years of modernization experience. His focus is on hexagonal architectures, hypermedia APIs, TestDSLs and the expressive and unambiguous modelling of the domain as code. He enjoys mastering TDD, BDD, DDD, decoupled design and even practices that don't include two D's. He also shaped the open source project CodeCharta, which lets even non-developers grasp the quality of their software.
TALK
Secure Your Coding Agent Like It’s Malware
Autonomous coding agents resemble powerful malware: they can write, execute, and modify code, access secrets, and call services—often opaquely.
Building on pioneering work from a year ago on safely applying AI to legacy codebases, this session extends that proven approach to the even riskier setting of autonomous agents. The agent itself is treated as untrusted and clamped down with tightly hardened containers and strict network firewalls that isolate execution, constrain file and tool access, and restrict communication to a minimal allowlist, drastically limiting blast radius and data-exfiltration paths.
The architecture mitigates core risks such as prompt injection, model misuse, and supply-chain abuse, while still enabling meaningful automation for real-world systems. Finally, the session outlines upcoming layers—fine-grained policy engines, runtime behavior monitoring, and end-to-end supply-chain verification—to build a robust, defense-in-depth stack for secure coding agents.
MORE VOICES
Other speakers at code.talks
See them live — and 100+ more.
One ticket, every track. Nov 4–5, 2026 at Kinopolis Hamburg.
Get your ticket





