There's a false sense of security around open source code, according to Trustwave researchers Brandon Myers and Assi Barak. Their deeper point was that open source code is prone to vulnerabilities ...
Hidden dependencies, social engineering attacks, and the complexity of foundation models can all contribute tothe insecure use of open-source software in 2025. Open-source software is common ...
Red Hat CEO Matt Hicks explains how AI agents like Anthropic’s Mythos have changed vulnerability management, patching and ...
Attackers are increasingly targeting open source projects, seeking to exploit holes in software that millions of organizations rely on as the foundation of their technology stacks. The staggering 280% ...
Open source security incidents aren't going away. The reliance on open source software (OSS) increases year-over-year, with more than 95% of all software, including open source, in some capacity. From ...
Most organizations know their perimeter. They know their firewall rules, their patching cadence, and their endpoint coverage.
Earlier this year, a Microsoft developer realized that someone had inserted a backdoor into the code of open source utility XZ Utils, which is used in virtually all Linux operating systems. The ...
Since Russian troops invaded Ukraine more than three years ago, Russian technology companies and executives have been widely sanctioned for supporting the Kremlin. That includes Vladimir Kiriyenko, ...
Two years ago, the joint government-private sector response to the Log4j vulnerability that spawned 800,000 attacks worldwide led to the Enduring Security Framework for federal agencies adopting open ...
Security researchers uncover flaw in the open source software used by NASA ground control to communicate with instruments and ...
SAN FRANCISCO, July 30, 2024 (GLOBE NEWSWIRE) -- Datadog, Inc., the monitoring and security platform for cloud applications, has become a premier member of the Open Source Security Foundation (OpenSSF ...