Help shape HDF5 safety, security, and privacy: FOSSY Aug 6 + SHINES workshop Aug 12

:mega: Help shape the future of HDF5 safety, security, and privacy.

Two August events will focus on making HDF5 more transparent, inspectable, and secure:

  • FOSSY 2026 — Aug 6, Vancouver: A GNU poke-based, machine-readable file-format specification for HDF5
  • HDF5 SHINES / Safe-OSE Workshop — Aug 12 afternoon, SDSC / UC San Diego + Zoom: HDF5 safety, security, privacy, supply-chain risk, audit findings, mitigation priorities, and community next steps. Registration required!

This is for HDF5 users, developers, administrators, packagers, integrators, security researchers, data managers, digital librarians, and anyone who depends on HDF5.

Please join us by replying below with your HDF5 SSP concerns or use cases, and tell us what the community should prioritize.

FOSSY talk: FOSSY 2026 | Presentation: A GNU poke-based, machine-readable file-format specification for HDF5
Workshop: Safe-OSE Workshop - SSDBM 2026
SHINES project: HDF5 SHINES - The HDF Group - ensuring long-term access and usability of HDF data and supporting users of HDF technologies

For sensitive vulnerability details, please do not post exploit information publicly. Use the HDF5 vulnerability reporting channel instead: https://ssp.hdfgroup.org/

1 Like

We would like this thread to collect practical input before the SHINES / Safe-OSE workshop.

Useful replies include:

  1. Use cases: Where do HDF5 files come from in your workflow? Who writes them? Who reads them? Are they trusted, semi-trusted, or untrusted?
  2. Operational concerns: Do you use HDF5 on shared HPC systems, cloud systems, institutional archives, instruments, embedded systems, or regulated environments?
  3. Plugins and extensions: Do you rely on filters, VOL connectors, VFDs, external links, virtual datasets, or dynamically loaded plugins?
  4. Safety issues: What HDF5 failure modes matter most to you: corrupted files, unexpected crashes, unreadable archives, silent data changes, compatibility breaks, or wrong results?
  5. Security issues: What concerns you most: malformed files, untrusted input, plugin loading, dependency risk, vulnerable old versions, package provenance, or CVE communication?
  6. Privacy issues: What metadata, attributes, paths, names, logs, or provenance information should not leak when HDF5 files are shared?
  7. Mitigation priorities: What stricter defaults would help? What would break if HDF5 became more conservative about untrusted files, external references, or plugins?

Please keep public replies high-level. Do not post exploit details, private data, sensitive files, credentials, or unpublished vulnerability information in this thread.

Ways to participate beyond this topic:

Event details

FOSSY 2026

Talk: A GNU poke-based, machine-readable file-format specification for HDF5
Speaker: Gerd Heber, The HDF Group
When: Thursday, August 6, 2026, 3:00–3:45 PM PDT
Where: MCLD 2018, FOSSY 2026, Vancouver
Link: FOSSY 2026 | Presentation: A GNU poke-based, machine-readable file-format specification for HDF5

This talk focuses on using GNU poke to describe HDF5 on-disk structures as executable, machine-readable specifications. The goal is to make HDF5 internals easier to inspect, test, validate, document, and reason about.

HDF5 SHINES / Safe-OSE Workshop at SSDBM 2026

When: Wednesday, August 12, 2026, afternoon
Where: San Diego Supercomputer Center, UC San Diego
Participation: In person or remote via Zoom
Link: Safe-OSE Workshop - SSDBM 2026

The workshop will bring together HDF5 developers, users, administrators, integrators, security practitioners, data managers, and researchers to discuss HDF5 safety, security, privacy, software supply-chain risk, audit findings, mitigation priorities, and practical next steps for the HDF5 ecosystem.

Audiences

Security researchers:
“Help define the threat model for HDF5: malformed files, metadata trust boundaries, plugin loading, supply-chain risk, and file-format-aware validation.”

Administrators / HPC centers:
“What should your site do when users bring arbitrary HDF5 files, filters, VOL connectors, VFDs, and long-lived data into shared infrastructure?”

Developers / maintainers:
“Machine-readable HDF5 specifications, GNU poke pickles, validation tools, conformance testing, fuzzing targets, and safer extension mechanisms.”

Users / scientists:
“What do safety, security, and privacy mean when your experiment, simulation, model, or archive is stored in HDF5?”

Digital librarians / archivists:
“HDF5 as long-lived scientific data: preservation, metadata exposure, trust, validation, repair, and evidence that a file means what it claims to mean.”

Still on the fence about HDF5 safety, security, and privacy? Check these articles for independent perspective:

Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident

OpenAI Agent Confirmed Hack at Second Company After Executing 17,600 Actions in Four-Day Breach

When an HDF5 file points outside itself

Tune into FOSSY 2026 and register for the SHINES workshop at SSBDM 2026! Seats are going fast…

Gerd