GitHub Secure Open Source Fund: Project maintainers, apply now!Help Net Security·Nov 20, 00:00 UTC · Nov 20, 2024Vulnerability130
Big tech companies step in to support the open source security ecosystemHelp Net Security·Mar 18, 00:00 UTC · Mar 18, 2026Vulnerability55
GitHub CISO on security strategy and collaborating with the open-source communityHelp Net Security·Jan 13, 00:00 UTC · Jan 13, 2025Vulnerability55
HackerOne updates Internet Bug Bounty program to improve the security of open source softwareHelp Net Security·Sep 23, 00:00 UTC · Sep 23, 2021Vulnerability55
EU unveils tech sovereignty package to cut reliance on US, Chinese suppliersThe Record·Jun 5, 13:43 UTC · Jun 5, 2026Vulnerability55
iTerm2 macOS Terminal App is affected by a critical RCE since 2012Security Affairs·Oct 10, 06:56 UTC · Oct 10, 2019VulnerabilityCVE-2019-953560
The US NSA is using Anthropic's Claude Mythos despite supply chain riskSecurity Affairs·Apr 21, 10:27 UTC · Apr 21, 2026Vulnerability55
Project Glasswing powered by Claude Mythos: defending software before hackers doSecurity Affairs·Apr 8, 11:18 UTC · Apr 8, 2026Vulnerability55
Paid open-source maintainers spend more time on securityHelp Net Security·Sep 23, 00:00 UTC · Sep 23, 2024Vulnerability55
ARMO raises $30 million to offer a complete open source security solution for the Kubernetes communityHelp Net Security·Jan 10, 13:59 UTC · Jan 10, 2024Vulnerability55
Linux Foundation secures $12.5 million to strengthen open source security and support maintainersHelp Net Security·Mar 17, 00:00 UTC · Mar 17, 2026Vulnerability30
How businesses can bolster their cybersecurity defenses with open sourceHelp Net Security·Jan 26, 00:00 UTC · Jan 26, 2023Vulnerability55
Critical open-source projects get a new security frameworkHelp Net Security·Jun 26, 00:00 UTC · Jun 26, 2026Vulnerability155
7-Year-Old Critical RCE Flaw Found in Popular iTerm2 macOS Terminal AppThe Hacker News·Oct 9, 18:38 UTC · Oct 9, 2019VulnerabilityCVE-2019-953560
Tidelift raises $27 million to improve open source software supply chain securityHelp Net Security·May 25, 00:00 UTC · May 25, 2022Vulnerability42
Google Offers Financial Support to Open Source Projects for CybersecurityThe Hacker News·Dec 18, 18:40 UTC · Dec 18, 2019Vulnerability30
#SOOCon23: UK Government Urges Industry Input on Software Security PolicyInfosecurity Magazine·Feb 8, 14:00 UTC · Feb 8, 2023Vulnerability55
Finding Vulnerabilities in Open Source ProjectsSchneier on Security·Feb 2, 16:01 UTC · Feb 2, 2022Vulnerability55
New open-source project takeover attacks spotted, stymiedHelp Net Security·Apr 16, 00:00 UTC · Apr 16, 2024Vulnerability55
Critical RCE vulnerabilities found in git (CVE-2022-41903, CVE-2022-23251)Help Net Security·Jan 19, 00:00 UTC · Jan 19, 2023VulnerabilityCVE-2022-41903CVE-2022-23251CVE-2022-4195360
Chainguard raises $140 million to strengthen open source software securityHelp Net Security·Jul 25, 00:00 UTC · Jul 25, 2024Vulnerability42
Establishing a security baseline for open source projectsHelp Net Security·May 13, 00:00 UTC · May 13, 2024Vulnerability55
ForAllSecure raises $21 million to secure open source projects used by businesses around the worldHelp Net Security·Mar 22, 00:00 UTC · Mar 22, 2022Vulnerability55
Critical command execution vulnerability in iTerm2 patched, upgrade ASAP!Help Net Security·Oct 10, 00:00 UTC · Oct 10, 2019VulnerabilityCVE-2019-953560
Google to create security team for open source projectsThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Vulnerability55
Open-source security is posing challenges governments can't easily solveCyberScoop·Jun 24, 13:45 UTC · Jun 24, 2026Vulnerability55
Zero trust: How the ‘Jia Tan’ hack complicated openCyberScoop·Aug 15, 13:00 UTC · Aug 15, 2024Vulnerability42
VeraCrypt Audit Reveals Critical Security Flaws — Update NowThe Hacker News·Oct 18, 12:01 UTC · Oct 18, 2016Vulnerability55
OpenAI wants AI to fix vulnerabilities, not just find themHelp Net Security·Jun 23, 00:00 UTC · Jun 23, 2026Vulnerability55
Seal Security raises $7.4 million to secure open source with GenAIHelp Net Security·Feb 14, 00:00 UTC · Feb 14, 2024Vulnerability55
CISA lays out new guidance for using open-source softwareHelp Net Security·Aug 3, 00:00 UTC · Aug 3, 2026Vulnerability30
DHS Releases Report into Log4j Vulnerabilities and ResponseInfosecurity Magazine·Jul 15, 17:19 UTC · Jul 15, 2022Vulnerability55
A 10-point plan to improve the security of open source softwareHelp Net Security·Jan 19, 11:46 UTC · Jan 19, 2023Vulnerability55
Anthropic's Glasswing: 10,000+ Vulnerabilities Found in One Month, and the Patching Problem Has Never Been More ObviousSecurity Affairs·May 24, 09:07 UTC · May 24, 2026VulnerabilityCVE-2026-5194160
OpenSSL announced fix for mystery high critical vulnerabilitySecurity Affairs·Mar 17, 11:53 UTC · Mar 17, 2015Vulnerability55
Backdoor vulnerability in open source tool exposes thousands of apps to remote code executionCyberScoop·Apr 4, 20:51 UTC · Apr 4, 2019Vulnerability in the wild60
Audit reveals critical flaws in VeraCrypt, promptly fixed with a new releaseSecurity Affairs·Oct 18, 08:39 UTC · Oct 18, 2016Vulnerability55
Open Source Community Hands White House 10Infosecurity Magazine·May 13, 09:30 UTC · May 13, 2022Vulnerability55