OpenSSF warns that open source infrastructure doesn't run on thoughts and prayers

Discussion in 'other security issues & news' started by stapp, Sep 23, 2025.

  1. stapp

    stapp Global Moderator

    Joined:
    Jan 12, 2006
    Posts:
    29,243
    Location:
    UK
    https://www.theregister.com/2025/09/23/openssf_open_source_infrastructure/
     
  2. reasonablePrivacy

    reasonablePrivacy Registered Member

    Joined:
    Oct 7, 2017
    Posts:
    2,329
    Location:
    Member state of European Union
    If you think how many big enterprise bussinesses and financial institutions use Java, and thus most often
    by extension Maven Central this is crazy that they are struggling financially (supposedly - I didn't read their financial statements). Granted, most enterprises have some sort of proxy/cache that also scans these (supposedly) for vulnerabilities but still...
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.