Open Source Security Foundation

openssf.org

Imported from official source

Cross-industry open source security foundation.

Type
Nonprofit
Scope
US · national
Website
openssf.org
Feed
Atom

Publications 17

  1. OpenSSF Newsletter – September 2026

    September brings a commitment to sustainable package registries, practical Cyber Resilience Act (CRA) guidance, new community security work, and three conversations on AI, regulation, and dependenc...

  2. What’s in the SOSS? Podcast #74 – S3E26 Building the Agentic Future with Angie Jones

    Discover the future of AI agents with Angie Jones, VP of Developer Experience at the Agentic AI Foundation. Learn about open source standards, MCP, and secure agentic engineering on the OpenSSF pod...

    AI
  3. CRA Tech Talk, 09/07/2026

    This CRA Tech Talk was hosted by the OpenSSF Global Cyber Policy Working group on Monday, 7 September at 4:00 PM CEST. High-level Agenda: Introduction to the CRA reporting obligations SUSE’s journe...

  4. Case Study: How Does IBM Turn Open Source Participation Into Enterprise and Career Value?

    IBM’s Jamie Thomas explains how intentional participation in open source communities and OpenSSF drives business strategy, improves software supply chain security, and creates career growth opportu...

    Cybersecurity 2 versions
  5. Inside the OpenSSF Summer Mentorship Showcase: How Emerging Developers Are Strengthening Supply Chain Security

    At OpenSSF, securing the open source software supply chain isn’t just about writing code or establishing policies. It is about growing the community of developers who build, maintain, and innovate ...

  6. Security Slam 2026 – Fall Edition

    The Open Source Security Foundation (OpenSSF) is partnering with the Cloud Native Computing Foundation (CNCF) Security Technical Advisory Group (TAG Security) to support the 2026 Security Slam at K...

  7. What’s in the SOSS? Podcast #73 – S3E25 Securing the Source: Navigating AI Velocity, CRA Compliance, and Dependency Debt with Abby Kearns

    In this episode of What’s in the SOSS, ActiveState CEO Abby Kearns breaks down the rapidly evolving open source security landscape. The conversation explores why reactive post-build scanning fails,...

  8. We’re In: Enterprise Commitment to Sustainable Package Registries

    The OpenSSF Governing Board and major tech enterprises are partnering to support sustainable funding models for public package registries. This commitment aims to secure and scale the global softwa...

  9. Grow CRA Readiness: Find Your Path Through the European Union Cyber Resilience Act

    Discover how the EU Cyber Resilience Act (CRA) impacts your open source work. OpenSSF’s new community garden user journey helps maintainers, software stewards, and manufacturers navigate legal requ...

  10. Empowering Open Source Security with Scalable Infrastructure

    How can open source projects maintain secure infrastructure without financial strain? OpenSSF Premier Member, Amazon Web Services (AWS) addresses this by providing critical funding and scalable com...

  11. A Community Guide to the EU CRA September 11 Deadline for Manufacturers

    The EU Cyber Resilience Act (CRA) introduces new cybersecurity requirements for products with digital elements. Discover what the September 11, 2026 reporting deadline for manufacturers means for t...

  12. Tech Talk Recap: A Practitioner’s Guide to CRA Readiness

    The EU Cyber Resilience Act is no longer a distant regulatory concept. With vulnerability reporting obligations to ENISA arriving on September 11 and the full weight of the law landing in December ...

  13. Open by Default After AI: The GDS Guidance and the Enforcement Question

    In early May 2026, NHS England issued a reported internal guidance note, SDLC-8, mandating the removal of public access to several hundred GitHub repositories. The stated reason was AI-accelerated ...

    AI Cybersecurity 2 versions
  14. What’s in the SOSS? Podcast #72 – S3E24 Balancing AI’s Double-Edged Sword: Software Engineering, Unlearning, and Ecosystem Sustainability with Mark Russinovich

    Join Azure CTO and OpenSSF Chair Mark Russinovich as he discusses AI's impact on software engineering, supply chain security, and vulnerability management.

  15. OpenSSF at Hacker Summer Camp 2026: Black Hat & DEF CON Highlights and Recap

    Las Vegas was once again the center of the cybersecurity universe from August 1–9 for Black Hat and DEF CON 2026. The Open Source Security Foundation (OpenSSF) had a major presence throughout the w...

  16. What’s in the SOSS? Podcast #71 – S3E23 Navigating the New Era: The EU Cyber Resilience Act Explained with Madalin Neag

    In this episode of What’s in the SOSS, host Sally Cooper and OpenSSF EU Policy Advisor Madalin Neag demystify the EU Cyber Resilience Act (CRA). Learn how the CRA establishes a new cybersecurity ba...

  17. OpenSSF Newsletter – August 2026

    The August 2026 OpenSSF Newsletter spotlights a wave of CRA readiness content, from a new Ericsson case study to a four-part podcast run on compliance.

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.