![Authelia](https://img.helpnetsecurity.com/wp-content/uploads/2024/05/15095211/authelia-open_source-400x200.webp)
Authelia: Open-source authentication and authorization server
Authelia is an open-source authentication and authorization server that offers 2FA and SSO for applications through a web portal. It works alongside reverse proxies to permit, …
![Dana Wang](https://img.helpnetsecurity.com/wp-content/uploads/2024/04/30142104/dana_wang-2-openssf-400x200.webp)
Establishing a security baseline for open source projects
In this Help Net Security interview, Dana Wang, Chief Architect at OpenSSF, discusses the most significant barriers to improving open-source software security (OSS security) …
![Protobom](https://img.helpnetsecurity.com/wp-content/uploads/2024/04/17075010/protobom-1500-400x200.png)
Protobom: Open-source software supply chain tool
Protobom is an open-source software supply chain tool that enables all organizations, including system administrators and software development communities, to read and …
![open source](https://img.helpnetsecurity.com/wp-content/uploads/2024/04/16103725/open-source_1500-400x200.webp)
New open-source project takeover attacks spotted, stymied
The OpenJS Foundation has headed off a “credible takeover attempt” similar to the one that resulted in a backdoor getting included in the open-source XZ Utils …
![Omkhar Arasaratnam](https://img.helpnetsecurity.com/wp-content/uploads/2024/02/28120155/omkhar_arasaratnam-2-openssf-400x200.webp)
Transitioning to memory-safe languages: Challenges and considerations
In this Help Net Security interview, Omkhar Arasaratnam, General Manager at the Open Source Security Foundation (OpenSSF), discusses the evolution of memory-safe programming …
![open source security](https://img.helpnetsecurity.com/wp-content/uploads/2022/04/13072028/open_source_security-400x200.jpg)
Securing software repositories leads to better OSS security
Malicious software packages are found on public software repositories such as GitHub, PyPI and the npm registry seemingly every day. Attackers use a number of tricks to fool …
![White House](https://img.helpnetsecurity.com/wp-content/uploads/2023/07/24144037/whitehouse-design-400x200.jpg)
White House launches AI Cyber Challenge to make software more secure
The Biden-Harris Administration has launched a major two-year competition using AI to protect the United States’ most important software, such as code that helps run the …
![AI](https://img.helpnetsecurity.com/wp-content/uploads/2023/06/14123410/ai-robots2-400x200.jpg)
Popular generative AI projects pose serious security threat
Many popular generative AI projects are an increased security threat and open-source projects that utilize insecure generative AI and LLMs also have poor security posture, …
![Brian Behlendorf](https://img.helpnetsecurity.com/wp-content/uploads/2023/05/16103314/brian_behlendorf-2-open_ssf-400x200.jpg)
Enhancing open source security: Insights from the OpenSSF on addressing key challenges
In this Help Net Security interview, we meet a prominent industry leader. Brian Behlendorf, CTO at the Open Source Security Foundation (OpenSSF), shares insights on the …
![open source](https://img.helpnetsecurity.com/wp-content/uploads/2020/05/13113507/opensource-blue-400x200.jpg)
Research reveals where 95% of open source vulnerabilities lie
New research from Endor Labs offers a view into the rampant but often unmonitored use of existing open-source software in application development and the dangers arising from …
![open source security](https://img.helpnetsecurity.com/wp-content/uploads/2022/04/13072028/open_source_security-400x200.jpg)
A 10-point plan to improve the security of open source software
The Linux Foundation and the Open Source Software Security Foundation, with input provided by executives from 37 companies and many U.S. government leaders, delivered a …
![Appointments](https://img.helpnetsecurity.com/wp-content/uploads/2021/10/14111336/appointments_1200-400x200.jpg)
OpenSSF announces 15 new members to tackle supply chain security challenges
The Open Source Security Foundation (OpenSSF) announced 15 new members from leading software development, cybersecurity, financial services, communications, and academic …
Featured news
Sponsored
Don't miss
- Critical Exim vulnerability facilitates malware delivery (CVE-2024-39929)
- Risk related to non-human identities: Believe the hype, reject the FUD
- Realm: Open-source adversary emulation framework
- Discover the growing threats to data security
- Encrypted traffic: A double-edged sword for network defenders