Alerts This Week
Warning Icon 1 914
Alerts This Week
Warning Icon 1 914

Security Trends - Page 8

Discover Security Trends News

Enterprise Survey Insights: Vulnerability Detection And Patch Management

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Detecting vulnerabilities and managing the associated patching is challenging even in a small-scale Linux environment. Scale things up and the challenge becomes almost unsurmountable. There are approaches that help, but these approaches are unevenly applied. Learn what a new survey reveals about how enterprises handle the security concerns of vulnerability detection and patch management.

2021 Open Source Risk Analysis: Stale Code In Commercial Software

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

A new report shows that stale open-source code is rampant in commercial software, and organizations in all industries are struggling to manage open source risk. "In 2020 the percentage of codebases containing high-risk vulnerabilities jumped from 49 to 60 percent. What was more disturbing is that several of the top 10 open source vulnerabilities found in 2019 codebases reappeared in the 2020 audits, all with significant percentage increases."

Understanding Supply Chain Risks and Protective Strategies

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Experts including Dr. David Wheeler, Director of Open Source Software Supply Chain Security at the Linux Foundation, discuss the growing trend in software supply chain attacks which use “dependency or namespace confusion” techniques, and how to secure software supply chains against these attacks.

Understanding Linux Security: Resilience Against Increased Attacks

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Linux is becoming increasingly popular, and for good reason - the open-source OS is flexible, customizable and highly secure. Luckily, Linux is superior in design to most platforms, making the inevitable increase in attacks targeting Linux less of a threat. Jack Wallen offers an eplanation, along with his perspective on the topic.

Survey Insights on Open Source Developer Motivations and Security Trends

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

A new survey conducted by The Linux Foundation'sOpen Source Security Foundation (OSSF) and the Laboratory for Innovation Science at Harvard (LISH) reveals that while open-source jobs are in high demand and the pay is great, it's not money that drives programmers to work on Open Source, but the love of solving problems and creation. The survey also reveals a worrisome trend: security is being neglected in open-source development.

Why Trust Open Source Security in Today's Computing Landscape

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Some people still think that open-source software security is inferior. However, security experts feel that it sets the bar for what computing security should be. "Open source is inherently more secure for the reason that patches, fixes and updates come immediately, and sometimes from competing sources."

Integrating Linux into Your Comprehensive Security Strategy

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Linux is a pervasive operating system—and for good reason. It’s lightweight, flexible, multi-architecture supportive and open source, all leading to loads of opportunity. Security is one of the main reasons Linux is chosen. In some ways, it can be a more stable and secure base OS to start from, no matter the use case.

Using Static Analysis for Continuous Assurance in Open Source Security

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Open Source lends itself to a new way of certifying software: Continuous Assurance. In this approach, automated tools and processes ensure that, as code changes, it continually satisfies compliance, quality, and security requirements. "Continuous Assurance integrates directly into development and benefits from the always-up-to-date nature of cloud services, making it a perfect match for Open Source."

Your message here