What are the most common OSS security pitfalls? - Cheuk Ting Ho - #techWebinarNepal Series-58

techWebinarNepal
techWebinarNepal
50 بار بازدید - 7 ماه پیش - What are the most common
What are the most common OSS security pitfalls?
Cheuk Ting Ho
Data Scientist and Developer Advocate

Agenda:
Background:
In 2023, 20 CISOs and technology veterans collaborated with Endor Labs’ Station 9 research team to analyze the most common security risk of using open-source projects 1. Open-source projects are now popularized not just by their availability but also quality of the software. However, not all open-source projects are well maintained and using open-source projects may consist of certain risks, this is even more important if we look at it from a security standpoint. It is important to understand those risks and carry out good practices while using open-source software and libraries.

Goal:
To provide information and considerations of best practices for companies and organizations which rely on open-source technologies. By exploring the potential risks and encouraging best practices within the engineering team, we can ensure the effective and safe use of open source within their companies and organizations.

Target audiences:
For those working in organizations that rely on open-source technologies and anyone who is using upstream open-source technologies in their projects.

Outline:
Popularity of open-source and the importance of open-source security.
Introduction of the research carried out by Endor Labs’ Station 9 research team.
Go over the 10 most common risks and how to avoid them.
Concluding list of best practices that any projects that used open-source projects should follow.

Bio:
After having a career as a Data Scientist and Developer Advocate, Cheuk dedicated her work to the open-source community and working as a community manager at OpenSSF. She has co-founded Humble Data, a beginner Python workshop that has been happening around the world. She has served the EuroPython Society board for two years and is now a fellow and director of the Python Software Foundation.

#techWebinar Nepal Series-58

Copyright @ 2023 #techwebinarnepal
7 ماه پیش در تاریخ 1402/09/23 منتشر شده است.
50 بـار بازدید شده
... بیشتر