Security News > 2019 > June > 1 in 10 open source components downloaded in 2018 had a known security vulnerability

This year’s Sonatype report reveals the best practices exhibited by exemplary open source software projects and commercial application development teams. As in years past, it also examines the rapidly expanding supply and continued exponential growth in consumption of open source components. For the fifth anniversary report, Sonatype collaborated with Gene Kim from IT Revolution, and Dr. Stephen Magill from Galois and MuseDev. Together with Sonatype, the researchers objectively examined and empirically documented, release patterns and … More → The post 1 in 10 open source components downloaded in 2018 had a known security vulnerability appeared first on Help Net Security.
News URL
http://feedproxy.google.com/~r/HelpNetSecurity/~3/btaahQk-wdc/
Related news
- Orbit: Open-source Nuclei security scanning and automation platform (source)
- Citrix Releases Security Fix for NetScaler Console Privilege Escalation Vulnerability (source)
- Misconfig Mapper: Open-source tool to uncover security misconfigurations (source)
- OSPS Baseline: Practical security best practices for open source software projects (source)
- Hetty: Open-source HTTP toolkit for security research (source)
- NetBird: Open-source network security (source)
- IntelMQ: Open-source tool for collecting and processing security feeds (source)
- BlueToolkit: Open-source Bluetooth Classic vulnerability testing framework (source)
- YES3 Scanner: Open-source S3 security scanner for public access, ransomware protection (source)