White House releases report on securing open-source software
Briefly

Almost every software application, website, mobile device, and Internet of Things device - including those used by small businesses, the Federal Government, and the national security community - incorporates open-source software to enable and scale rapid application development processes.
A report of the Log4Shell incident noted that open-source projects generally do not have dedicated coordinated vulnerability disclosure and response teams that investigate root causes of reported vulnerabilities and work to bring improvements.
Read at CyberScoop
[
add
]
[
|
|
]