Eclipse Plunges into OSS Supply Chain Security

The Eclipse Foundation will be getting more hands-on in helping to secure the open source software supply chain after accepting a contribution from the Open Source Security Foundation (OpenSSF) this week. OpenSSF’s Alpha-Omega Project has committed $400,000 to the Eclipse Foundation to fund additional staff and resources to implement many of the ideas in the Eclipse Foundation’s Open Source Software Supply Chain Best Practices document, said Brian Behlendorf, general manager of the Linux Foundation’s OpenSSF in a blog post co-authored by Michael Scovetta, principal security program manager at Microsoft, and Michael Winser, group product manager for software supply chain security and CI/CD at Google.

Read full article on The New Stack

 


Date:

Categorie(s):