Google releases new open-source security software program
By MYBRANDBOOK
According to the Synopsys Cybersecurity Research Center (CyRC) 2021 “Open Source Security and Risk Analysis” (OSSRA) report, 95% of all commercial programs include open source software. According to the number of CyRCs, most of that code contains old or insecure code. But how can you determine which libraries and other components are safe without digging deep into your code? Google and the Open Source Security Foundation (OSSF) have a quick and easy answer, the OpenSSF Security Scorecard.
As per Texasnewstoday, these scorecards are based on an automated set of pass / fail checks and provide a quick review of many open source software projects. Scorecard projects are automated security tools that generate “risk scores” for open source programs.
This is important because only some organizations have implemented systems and processes to check for new open source dependencies on security issues. However, even with Google, using all of its resources makes this process tedious, manual, and error-prone. To make matters worse, many of these projects and developers are resource-constrained. result? Security often has a lower priority in the task list. This makes critical projects vulnerable to exploits without following proper security best practices.
The Scorecard project hopes that the release of Scorecard v2 will facilitate security checks and facilitate security implementation. This includes making new security checks, scaling up the number of projects to be scored, and making this data easily accessible for analysis.
For developers, scorecards help reduce the effort and manual effort required to continuously evaluate package changes as they maintain the project’s supply chain. Consumers can automatically access risk to make informed decisions about program acceptance, look for alternative solutions, and work with maintainers to make improvements.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
TALLY SOLUTIONS PVT. LTD.
EXATRON SERVERS MANUFACTURING PVT. LTD.
TEJAS NETWORKS INDIA PVT. LTD.
TAC SECURITY SOLUTIONS
ICONS OF INDIA : RISHAD PREMJI
Rishad Premji is Executive Chairman of Wipro Limited, a $11.3 billion ...
ICONS OF INDIA : VINAY SINHA
Vinay Sinha is the Managing Director of Sales for the India Mega Regio...
Icons Of India : Dr. Arvind Gupta
Arvind Gupta is the Head and Co-Founder of the Digital India Foundatio...
BSE - Bombay Stock Exchange
The Bombay Stock Exchange (BSE) is one of India’s largest and oldest...
C-DAC - Centre for Development of Advanced Computing
C-DAC is uniquely positioned in the field of advanced computing...
IREDA - Indian Renewable Energy Development Agency Limited
IREDA is a specialized financial institution in India that facilitates...
Indian Tech Talent Excelling The Tech World - Aman Bhutani, CEO, GoDaddy
Aman Bhutani, the self-taught techie and CEO of GoDaddy, oversees a co...
Indian Tech Talent Excelling The Tech World - Soni Jiandani, Co-Founder- Pensando Systems
Soni Jiandani, Co-Founder of Pensando Systems, is a tech visionary ren...
Indian Tech Talent Excelling The Tech World - AJAY BANGA, President - World Bank
Ajay Banga is an Indian-born American business executive who currently...