msw, to opensource

Open Source Security (OpenSSF) and OpenJS Foundations Issue Alert for Social Engineering Takeovers of Open Source Projects

XZ Utils cyberattack likely not an isolated incident

https://openjsf.org/blog/openssf-openjs-alert-social-engineering-takeovers

msw,

Free and Open Source software communities are anything but “fragile” in light of recent failed attacks.

They are smart. They are vigilant. They are resilient.

But they also need support from institutions given the resources attackers may have.

davelester, to random
@davelester@fosstodon.org avatar

Good morning from ! Opening keynote: “SBOMs Everywhere: Work in Progress & Challenges Ahead” with some great updates on incl the final release tag of 3.0! https://github.com/spdx/spdx-3-model/releases/tag/3.0

Slide: “Extending SPDX beyond 3.0”

davelester, to random
@davelester@fosstodon.org avatar

We've split into two tracks during ! Next up: "Driving Security at Scale: Principles for Package Repository Security" -- the framework is available online https://repos.openssf.org/principles-for-package-repository-security

openssf, to random
@openssf@social.lfx.dev avatar

⏱️ SOSS Community Day NA & Open Source Summit North America are just around the corner. Here's a sneak peek at the incredible sessions lined up for next week.
Mark your calendars and join us for an enlightening experience!
https://openssf.org/blog/2024/04/12/sessions-you-wont-want-to-miss-at-soss-community-day-na-and-open-source-summit-north-america-2024/

davelester, to random
@davelester@fosstodon.org avatar

Excited for next week's in Seattle! Monday's plan: and . Hallway track on Tuesday.

Open to coffee/lunch meet ups - let’s talk OSPOs, developer ecosystems, package managers, or music! 👋 New and existing connections welcome!

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • Durango
  • everett
  • cisconetworking
  • magazineikmin
  • mdbf
  • rosin
  • ngwrru68w68
  • thenastyranch
  • Youngstown
  • slotface
  • khanakhh
  • kavyap
  • DreamBathrooms
  • megavids
  • ethstaker
  • normalnudes
  • tester
  • cubers
  • tacticalgear
  • InstantRegret
  • osvaldo12
  • modclub
  • Leos
  • provamag3
  • GTA5RPClips
  • anitta
  • lostlight
  • All magazines