Google releases new open-source security software program
By MYBRANDBOOK
According to the Synopsys Cybersecurity Research Center (CyRC) 2021 “Open Source Security and Risk Analysis” (OSSRA) report, 95% of all commercial programs include open source software. According to the number of CyRCs, most of that code contains old or insecure code. But how can you determine which libraries and other components are safe without digging deep into your code? Google and the Open Source Security Foundation (OSSF) have a quick and easy answer, the OpenSSF Security Scorecard.
As per Texasnewstoday, these scorecards are based on an automated set of pass / fail checks and provide a quick review of many open source software projects. Scorecard projects are automated security tools that generate “risk scores” for open source programs.
This is important because only some organizations have implemented systems and processes to check for new open source dependencies on security issues. However, even with Google, using all of its resources makes this process tedious, manual, and error-prone. To make matters worse, many of these projects and developers are resource-constrained. result? Security often has a lower priority in the task list. This makes critical projects vulnerable to exploits without following proper security best practices.
The Scorecard project hopes that the release of Scorecard v2 will facilitate security checks and facilitate security implementation. This includes making new security checks, scaling up the number of projects to be scored, and making this data easily accessible for analysis.
For developers, scorecards help reduce the effort and manual effort required to continuously evaluate package changes as they maintain the project’s supply chain. Consumers can automatically access risk to make informed decisions about program acceptance, look for alternative solutions, and work with maintainers to make improvements.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
HP INDIA SALES PVT. LTD.
ALPHAMAX TECHNOLOGIES PVT. LTD.
POLYCAB INDIA PVT. LTD
VERSA NETWORKS INDIA PVT. LTD.
ICONS OF INDIA : SUNIL BHARTI MITTAL
Sunil Bharti Mittal is the Founder and Chairman of Bharti Enterprises,...
Icons Of India : NANDAN NILEKANI
Nandan Nilekani is the Co-Founder and Chairman of Infosys Technologies...
Icons Of India : MUKESH D. AMBANI
Mukesh Dhirubhai Ambani is an Indian businessman and the chairman and ...
NPCI - National Payments Corporation of India
NPCI is an umbrella organization for operating retail payments and set...
STPI - Software Technology Parks of India
STPI promotes and facilitates the growth of the IT and ITES industry i...
CERT-IN - Indian Computer Emergency Response Team
CERT-In is a national nodal agency for responding to computer security...
Indian Tech Talent Excelling The Tech World - ANJALI SUD, CEO – Tubi
Anjali Sud, the former CEO of Vimeo, now leads Tubi, Fox Corporation...
Indian Tech Talent Excelling The Tech World - AJAY BANGA, President - World Bank
Ajay Banga is an Indian-born American business executive who currently...
Indian Tech Talent Excelling The Tech World - PADMASREE WARRIOR, Founder, President & CEO - Fable
Padmasree Warrior, the Founder, President, and CEO of Fable, is revolu...