You are here |
blog.tidelift.com | ||
| | | |
osv.dev
|
|
| | | | Comprehensive vulnerability database for your open source projects and dependencies. | |
| | | |
tarakiyee.com
|
|
| | | | This post was prompted by a discussion on the Open Source Security Foundation (OpenSSF) Slack channel that was so interesting it warranted being posted to the SIREN mailing list. But this isn't your typical vulnerability or security advisory, but rather it's about a practice that seems pervasive, potentially dangerous, yet also under reported. And it... | |
| | | |
dfrlab.org
|
|
| | | | A proof-of-concept study looking for correlation between open source software project funding and security practices at scale. | |
| | | |
coderwall.com
|
|
| | [StackOverflow](http://stackoverflow.com/users/3272411) |