当前位置:网站首页>"Song of ice and fire" in the eleventh issue of "open source Roundtable" -- how to balance the natural contradiction between open source and security?
"Song of ice and fire" in the eleventh issue of "open source Roundtable" -- how to balance the natural contradiction between open source and security?
2022-07-07 13:35:00 【Open source society】


| edit : Tanglingbo
| Coordinating editor : Wang Yuemin
| Design : Wang Fuzheng
2022 Open a year log4j Cause the global information security earthquake , Governments around the world 、 Non profit foundations 、 Think tanks are paying high attention to the field of open source security :
The China Academy of communications and communications was established “ Open source and security ” department
OpenSSF GM Brian Behlendorf Make a statement in the United States Congress
Google And other giants invested heavily in safety related , Including bug fixes
Open source occupies more of the software supply chain , Enterprises begin to pay attention to SBOM、 Compliance testing, etc
Such a cutting-edge and important topic , We believe that more people should know and pay attention to it . from CSDN The host , Yunda Institute of China Academy of information and communication 、 Kaiyuan society 、 Tengyuan Association jointly supports 《 Open source Roundtable 》 Issue 11 , We invite technical experts from Huawei open source management center , The open atom Foundation TOC Xu Liang , Guoxue, deputy director of open source and software security department of Yunda Institute of Chinese Academy of communications , Polar fox (GitLab) DevOps Technical preacher 、OpenSSF Ma Jinghe, deputy head of the China working group, jointly discussed open source security issues .
This topic
“ Open source security ” What does it mean in a general sense ?
Why does a small open source vulnerability lead to a very serious open source security problem ?
Open source usually means open , And a high degree of openness will also bring higher risks , How to balance the natural contradiction between open source and security ?
How should enterprises establish their own open source security strategy ?
Share time
7 month 5 Japan 19:00-20:30
Live broadcast platform and address
Sharing guests
Xu Liang
Huawei open source management center , The open atom Foundation TOC、OpenSSF Director of the foundation
Xue Guo
Deputy director of the open source and software security department of the Yunda Institute of the Chinese Academy of the communications
Mainly engaged in open source 、 Safety related work , At present, he is the director of China Communications Standardization Association TC608 Open source governance 、 Protect Dangerous cloud 、 Cloud security 、 Team leader of risk management and other working groups . Lead the preparation ITU standard 《 Cloud computing risk management framework 》, Establish a trusted open source standard system , Lead the preparation 《 Open source ecological white paper 》 And more than ten white papers on open source and security .
Ma Jinghe ( Little horse elder brother )
Polar fox (GitLab) DevOps Technical preacher ,OpenSSF Deputy head of China Working Group
Tang Xiaoyin ( host )
CSDN《 New programmers 》 Managing editor
Tang Xiaoyin ,CSDN《 New programmers 》 Managing editor , Plan as a whole 《 Annual survey of Chinese developers Sue 》, Editor in chief 《 China AI Application developer Report 》、《 Open source applications in China Sender report 》 Series report , primary 《 The programmer 》 Magazine editor , Previous appointment MDCC、CCAI、 Editor in chief of developer conferences such as the open source heroes Association .
Click below Reservation live broadcast ,
Participate in interaction and win gifts
Related reading | Related Reading
The book of night and sky #53 Apache Of the open source community “ Stone soup ”
Investment promotion was fully launched | 2022 International Open Source Festival (IOSF) We send you an invitation to cooperate !

This article is from WeChat official account. - Kaiyuan society KAIYUANSHE(kaiyuanshe).
If there is any infringement , Please contact the [email protected] Delete .
Participation of this paper “OSC Source creation plan ”, You are welcome to join us , share .
边栏推荐
- 2022-7-6 Leetcode 977.有序数组的平方
- Digital IC Design SPI
- [learning notes] segment tree selection
- LeetCode_ Binary search_ Medium_ 153. Find the minimum value in the rotation sort array
- MySQL error 28 and solution
- My "troublesome" subordinates after 00: not bad for money, against leaders, and resist overtime
- Vscade editor esp32 header file wavy line does not jump completely solved
- Indoor ROS robot navigation commissioning record (experience in selecting expansion radius)
- Flink | 多流转换
- 记一次 .NET 某新能源系统 线程疯涨 分析
猜你喜欢

Write it down once Net a new energy system thread surge analysis

JS slow motion animation principle teaching (super detail)

Indoor ROS robot navigation commissioning record (experience in selecting expansion radius)

Navicat运行sql文件导入数据不全或导入失败

MongoDB内部的存储原理

Deep understanding of array related problems in C language

cmake 学习使用笔记(一)
![SSRF漏洞file伪协议之[网鼎杯 2018]Fakebook1](/img/10/6de1ee8467b18ae03894a8d5ba95ff.png)
SSRF漏洞file伪协议之[网鼎杯 2018]Fakebook1

error LNK2019: 无法解析的外部符号

Cinnamon taskbar speed
随机推荐
Detr introduction
Cinnamon Applet 入门
[etc.] what are the security objectives and implementation methods that cloud computing security expansion requires to focus on?
[QNX hypervisor 2.2 user manual]6.3.4 virtual register (guest_shm.h)
Xshell connection server changes key login to password login
【黑马早报】华为辟谣“军师”陈春花;恒驰5预售价17.9万元;周杰伦新专辑MV 3小时播放量破亿;法华寺回应万元月薪招人...
118. 杨辉三角
LeetCode_ Binary search_ Medium_ 153. Find the minimum value in the rotation sort array
[learning notes] agc010
Realbasicvsr test pictures and videos
PAcP learning note 3: pcap method description
2022-7-7 Leetcode 34.在排序数组中查找元素的第一个和最后一个位置
Mongodb slice summary
单片机学习笔记之点亮led 灯
QQ medicine, Tencent ticket
MongoDB内部的存储原理
MySQL error 28 and solution
ESP32 ① 编译环境
存储过程的介绍与基本使用
My "troublesome" subordinates after 00: not bad for money, against leaders, and resist overtime






