Google commits $1M to new Linux Basis open supply safety rewards program

0
204

[ad_1]

The Rework Expertise Summits begin October thirteenth with Low-Code/No Code: Enabling Enterprise Agility. Register now!


Let theย OSS Enterprise publicationย information yourย openย supplyย journey!ย Sign up here.

Google has announced that itโ€™s sponsoring a brand new open supply safety program hosted by the Linux Basis. The Safe Open Supply (SOS) Rewards pilot program gives monetary incentives for builders engaged on safety round crucial open supply initiatives.

Open supply software program performs an integral a part of many crucial infrastructure and nationwide safety techniques, nonetheless current knowledge means that โ€œupstreamโ€ assaults on open supply software program have increased in the past year as unhealthy actors search new methods to infiltrate the software program provide chain. Furthermore, numerous organizations โ€” from authorities businesses to hospitals and companies โ€” have been hit by targeted software supply chain attacks, main President Biden to issue an executive order outlining measures to fight it.

As such, Google not too long ago unveiled a $10 billionย five-year dedication to support President Bidenโ€™s plans to bolster U.S. cyber defenses, together with a $100 million wedge to fund third-party foundations that help open supply safety. A couple of weeks again, Google revealed it was giving financial backing to the Open Supply Expertise Enchancment Fund (OSTIF), with plans to initially sponsor safety opinions in eight crucial open supply software program initiatives. This newest announcement builds on that, with Google now committing $1 million to the SOS Rewards program.

Rewarding

Rewards can fluctuate from $505 to $10,000 or extra relying on the scope and significance of the mission by way of trade adoption and the potential influence the enhancements may have.

Whereas the SOS Rewards program does bear some similarities to a standard bug bounty program, SOS Rewards is completely different in that it isnโ€™t seeking to reward particular mission vulnerability discoveries and fixes โ€” itโ€™s about supporting โ€œproject-wide enhancements and the implementation of open supply safety greatest practices,โ€ in accordance with the missionโ€™s FAQ part.

For now, solely representatives from Googleโ€™s open supply safety staff (GOSST) and the Linux Basis will sit on the evaluating panel, although plans are afoot to increase membership to different organizations sooner or later.

VentureBeat

VentureBeatโ€™s mission is to be a digital city sq. for technical decision-makers to achieve data about transformative know-how and transact.

Our website delivers important data on knowledge applied sciences and techniques to information you as you lead your organizations. We invite you to grow to be a member of our group, to entry:

  • up-to-date data on the topics of curiosity to you
  • our newsletters
  • gated thought-leader content material and discounted entry to our prized occasions, similar to Transform 2021: Learn More
  • networking options, and extra

Become a member

[ad_2]

Source

LEAVE A REPLY

Please enter your comment!
Please enter your name here