当前位置:网站首页>Open source and safe "song of ice and fire"
Open source and safe "song of ice and fire"
2022-07-06 17:51:00 【CSDN information】
author | He Miao Coordinating editor | Zhang Hongyue
Produce | CSDN(ID:CSDNnews)
2022 Open a year log4j Cause the global information security earthquake , Governments around the world 、 Non profit foundations 、 Think tanks are paying high attention to the field of open source security :
The China Academy of communications and communications was established “ Open source and security ” department ;
OpenSSF GM Brian Behlendorf Make a statement in the United States Congress ;
Google And other giants invested heavily in safety related , Including bug fixes ;
Open source occupies more of the software supply chain , Enterprises begin to pay attention to SBOM、 Compliance testing, etc .
Such a cutting-edge and important topic , More people should know and pay attention to . therefore , from CSDN The host , Yunda Institute of China Academy of information and communication 、 Kaiyuan society 、 Tengyuan Association jointly supports 《 Open source Roundtable 》 In the eleventh issue, we invited technical experts from Huawei open source management center , The open atom Foundation TOC Member Xu Liang , Guoxue, deputy director of open source and software security department of Yunda Institute of Chinese Academy of communications , Polar fox (GitLab) DevOps Technical preacher 、OpenSSF Ma Jinghe, deputy head of the China working group, jointly discussed open source security issues .
This topic
“ Open source security ” What does it mean in a general sense ?
Why does a small open source vulnerability lead to a very serious open source security problem ?
Open source usually means open , And a high degree of openness will also bring higher risks , How to balance the natural contradiction between open source and security ?
How should enterprises establish their own open source security strategy ?
Share time and address
Time :7 month 5 Japan 19:00-20:30
Broadcast address :https://live.csdn.net/room/csdnnews/fXXyTo5y
platform :CSDN Website 、CSDN Wechat video Number
Sharing guests
Xu Liang Huawei open source management center , The open atom Foundation TOC member
As a member of the open source community, it is close 10 year , Experienced in the open source community “90 after ”, Xu Liang has been involved in the open source community since high school ,2011 It has become Debian Developers of , And repeatedly undertake GSoC Project mentors . Now he is a technical expert of Huawei open source capability center 、 Open atom open source foundation TOC member .
Xue Guo Deputy director of the open source and software security department of the Yunda Institute of the Chinese Academy of the communications
Xue Guo , Deputy director of the open source and software security department of the Yunda Institute of the Chinese Academy of the communications . Mainly engaged in open source 、 Safety related work , At present, he is the director of China Communications Standardization Association TC608 Open source governance 、 Insurance cloud 、 Cloud security 、 Team leader of risk management and other working groups . Lead the preparation ITU standard 《 Cloud computing risk management framework 》, Establish a trusted open source standard system , Lead the preparation 《 Open source ecological white paper 》 And more than ten white papers on open source and security .
Ma Jinghe Polar fox (GitLab) DevOps Technical preacher ,OpenSSF Deputy head of China Working Group
Engaged in research and development (ZTE), Have practiced DevSecOps(IBM), Currently in Jihu (GitLab) do DevOps/DevSecOps Technical sermons . Participate in open source related activities in your spare time , yes LFAPAC Open source preacher ,CDF ambassador,OpenSSF Deputy head of China Working Group .
Tang Xiaoyin ( host )CSDN《 New programmers 》 Managing editor
Tang Xiaoyin ,CSDN《 New programmers 》 Managing editor , Plan as a whole 《 Annual survey report of Chinese developers 》, Editor in chief 《 China AI Application developer Report 》、《 China open source application developer report 》 Series report , primary 《 The programmer 》 Magazine editor , Previous appointment MDCC、CCAI、 Editor in chief of developer conferences such as the open source heroes Association .
Scan QR code to make an appointment for live broadcast
Participate in interaction and win gifts
边栏推荐
- HMS Core 机器学习服务打造同传翻译新“声”态,AI让国际交流更顺畅
- [rapid environment construction] openharmony 10 minute tutorial (cub pie)
- Interview shock 62: what are the precautions for group by?
- Alibaba brand data bank: introduction to the most complete data bank
- Selected technical experts from China Mobile, ant, SF, and Xingsheng will show you the guarantee of architecture stability
- 视频融合云平台EasyCVR增加多级分组,可灵活管理接入设备
- Optimization of middle alignment of loading style of device player in easycvr electronic map
- SAP UI5 框架的 manifest.json
- Concept and basic knowledge of network layering
- 开源与安全的“冰与火之歌”
猜你喜欢
PySpark算子处理空间数据全解析(5): 如何在PySpark里面使用空间运算接口
Sqoop I have everything you want
Unity tips - draw aiming Center
Olivetin can safely run shell commands on Web pages (Part 1)
JMeter interface test response data garbled
Solution qui ne peut pas être retournée après la mise à jour du navigateur Web flutter
李书福为何要亲自挂帅造手机?
一体化实时 HTAP 数据库 StoneDB,如何替换 MySQL 并实现近百倍性能提升
【Elastic】Elastic缺少xpack无法创建模板 unknown setting index.lifecycle.name index.lifecycle.rollover_alias
RepPoints:可形变卷积的进阶
随机推荐
Unity particle special effects series - treasure chest of shining stars
Sqoop I have everything you want
SAP UI5 框架的 manifest.json
Appium automated test scroll and drag_ and_ Drop slides according to element position
[ASM] introduction and use of bytecode operation classwriter class
[introduction to MySQL] third, common data types in MySQL
微信小程序中给event对象传递数据
VR全景婚礼,帮助新人记录浪漫且美好的场景
基本磁盘与动态磁盘 RAID磁盘冗余阵列区分
Optimization of middle alignment of loading style of device player in easycvr electronic map
视频融合云平台EasyCVR增加多级分组,可灵活管理接入设备
Interview shock 62: what are the precautions for group by?
node の SQLite
Xin'an Second Edition: Chapter 25 mobile application security requirements analysis and security protection engineering learning notes
Summary of Android interview questions of Dachang in 2022 (II) (including answers)
重磅硬核 | 一文聊透对象在 JVM 中的内存布局,以及内存对齐和压缩指针的原理及应用
The solution that flutterweb browser cannot be rolled back after refreshing
There is a gap in traditional home decoration. VR panoramic home decoration allows you to experience the completion effect of your new house
EasyCVR电子地图中设备播放器loading样式的居中对齐优化
李書福為何要親自掛帥造手機?