Not Managing Open Source Opens Door for Hackers

Discussion in 'other security issues & news' started by guest, May 1, 2019.

  1. guest

    guest Guest

    Not Managing Open Source Opens Door for Hackers
    April 30, 2019
    https://www.infosecurity-magazine.com/news/not-managing-open-source-opens-1/
     
  2. guest

    guest Guest

    The Truth About Vulnerabilities in Open Source Code
    July 18, 2019
    https://www.darkreading.com/edge/th...rabilities-in-open-source-code/b/d-id/1335187
     
  3. guest

    guest Guest

    Top 5 Open Source Security Risks You Should Know About
    August 9, 2019
    https://www.fromdev.com/2019/08/top-open-source-security-risks.html
     
  4. guest

    guest Guest

    The License and Security Risks of Using Node.js
    Why open source software could make your application open for exploitation
    August 29, 2019

    https://dzone.com/articles/the-license-and-security-risks-of-using-nodejs
     
  5. guest

    guest Guest

    Open Source Software Vulnerabilities Increased By 50% In 2019: Report
    March 13, 2020
    https://fossbytes.com/open-source-vulnerabilities-increased-50-percent-2019/
    WhiteSource: The state of open source vulnerabilties 2020
     
  6. guest

    guest Guest

    70 Percent of Mobile, Desktop Apps Contain Open-Source Bugs
    May 25, 2020
    https://threatpost.com/70-of-apps-open-source-bugs/156040/
    Veracode: State of Software Security: Open Source Edition
    (PDF): https://www.veracode.com/sites/default/files/pdf/resources/reports/state-of-software-security-open-source-edition-veracode-report.pdf
     
  7. guest

    guest Guest

    Vulnerabilities in popular open source projects doubled in 2019
    June 8, 2020
    https://www.zdnet.com/article/vulnerabilities-in-popular-open-source-projects-doubled-in-2019/
    RiskSense: Open Source Software Security Vulnerabilities Doubled in 2019 According to RiskSense Spotlight Report
     
  8. guest

    guest Guest

    Open Source Security Issues Exist: Deal With Them, Report Urges
    June 25, 2020
    https://www.technewsworld.com/story...-Exist-Deal-With-Them-Report-Urges-86729.html
    Information Security Forum (ISF): Cybersecurity 2020: challenges and threats to be aware of
     
  9. guest

    guest Guest

    Open Source Security's Top Threat and What To Do About It
    September 14, 2020
    https://www.darkreading.com/risk/op...threat-and-what-to-do-about-it/a/d-id/1338857
    Synopsis: 2020 Open Source Security and Risk Analysis (OSSRA) Report
    (PDF - 1.99 MB): https://www.synopsys.com/content/dam/synopsys/sig-assets/reports/2020-ossra-report.pdf
     
  10. guest

    guest Guest

    Open source vulnerabilities go undetected for over four years
    December 3, 2020
    https://www.helpnetsecurity.com/2020/12/03/open-source-vulnerabilities/
    Octoverse report
     
  11. guest

    guest Guest

    Unmanaged open-source software is putting businesses at risk
    Most open-source code comes with known vulnerabilities, a new report argues
    December 9, 2020

    https://www.itproportal.com/news/unmanaged-open-source-software-is-putting-businesses-at-risk/
    Synopsis: Six key findings from the ‘DevSecOps Practices and Open Source Management in 2020’ report
     
  12. guest

    guest Guest

    Most Developers Never Update Third-Party Libraries in Their Software: Report
    June 22, 2021
    https://www.securityweek.com/most-d...e-third-party-libraries-their-software-report
    Veracode: State of Software Security v11: Open Source Edition
     
  13. guest

    guest Guest

    Several Bugs Found in 3 Open-Source Software Used by Several Businesses
    July 27, 2021
    https://thehackernews.com/2021/07/several-bugs-found-in-3-open-source.html
    Rapid7: Multiple Open Source Web App Vulnerabilities Fixed
     
  14. guest

    guest Guest

    GitLab’s open source Package Hunter detects malicious code in dependencies
    August 2, 2021
    https://venturebeat.com/2021/08/02/...unter-detects-malicious-code-in-dependencies/
     
  15. guest

    guest Guest

    5 Security Measures For Open Source Based Apps
    OS-based applications aren’t inherently risky and can be totally secure if you know what to do
    August 4, 2021

    https://dzone.com/articles/security-measures-for-open-source-based-apps
     
  16. guest

    guest Guest

    Dependency Combobulator: Open source toolkit to combat dependency confusion attacks
    November 10, 2021
    https://www.helpnetsecurity.com/2021/11/10/dependency-combobulator-open-source-toolkit/
     
  17. guest

    guest Guest

    Dev corrupts NPM libs 'colors' and 'faker' breaking thousands of apps
    January 9, 2022
     
  18. stapp

    stapp Global Moderator

    Joined:
    Jan 12, 2006
    Posts:
    24,067
    Location:
    UK
    This is something which is going to have a big impact.
     
  19. reasonablePrivacy

    reasonablePrivacy Registered Member

    Joined:
    Oct 7, 2017
    Posts:
    2,010
    Location:
    Member state of European Union
    The ultimate, holy grail (sic!) of insider threats?
     
  20. guest

    guest Guest

    Protestware on the rise: Why developers are sabotaging their own code
    July 27, 2022
     
  21. guest

    guest Guest

    Researchers Find Security Flaw in JsonWebToken Library Used By 20,000+ Projects
    By Alessandro Mascellino @a_mascellino - January 10, 2023
    Palo Alto Networks - Unit42: Disclosing a New Vulnerability in JWT Secret Poisoning (CVE-2022-23529)
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.