home.social

#ossra — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #ossra, aggregated by home.social.

fetched live
  1. RE: mastodon.social/@FreeBSDFounda

    2026 Open Source Security and Risk Analysis Report – Software Governance in the AI Era – Black Duck Software, Inc.

    blackduck.com/content/dam/blac

    ― a direct link to the freely-available report that's mentioned in the joint statement from Apereo Foundation, Open Source Initiative (OSI), Open Source Technology Improvement Fund (OSTIF), and FreeBSD Foundation.

    "The “Open Source Security and Risk Analysis” (OSSRA) report has been the industry’s definitive look at the state of open source code for a decade. Each year, we analyze anonymized findings from commercial codebases audited by the Black Duck Audit Services team, and this provides an unmatched, real-world view of how open source is used—and sometimes misused—across every major industry. This year’s findings document a pivotal moment: The explosion of AI-assisted development has fundamentally altered the risk landscape for software and the baseline for compliance with new regulatory initiatives such as the EU Cyber Resilience Act (CRA) and the Digital Operational Resilience Act (DORA). …"

    #AI #CRA #DORA #OSI #OSTIF #FreeBSD #OSSRA

  2. RE: mastodon.social/@FreeBSDFounda

    2026 Open Source Security and Risk Analysis Report – Software Governance in the AI Era – Black Duck Software, Inc.

    blackduck.com/content/dam/blac

    ― a direct link to the freely-available report that's mentioned in the joint statement from Apereo Foundation, Open Source Initiative (OSI), Open Source Technology Improvement Fund (OSTIF), and FreeBSD Foundation.

    "The “Open Source Security and Risk Analysis” (OSSRA) report has been the industry’s definitive look at the state of open source code for a decade. Each year, we analyze anonymized findings from commercial codebases audited by the Black Duck Audit Services team, and this provides an unmatched, real-world view of how open source is used—and sometimes misused—across every major industry. This year’s findings document a pivotal moment: The explosion of AI-assisted development has fundamentally altered the risk landscape for software and the baseline for compliance with new regulatory initiatives such as the EU Cyber Resilience Act (CRA) and the Digital Operational Resilience Act (DORA). …"

    #AI #CRA #DORA #OSI #OSTIF #FreeBSD #OSSRA

  3. 🚀 A decade of OSSRA reveals how open source has transformed software development! From 35% to 70% open source code in apps, vulnerabilities have surged too-154 per app on average in 2025. Managing security & licenses is now mission-critical. Dive into the data & future challenges here: techradar.com/pro/ten-years-of 🔐💻 #OpenSource #Cybersecurity #OSSRA #DevSecOps #SoftwareSecurity #TechTrends #newz

  4. 🚀 A decade of OSSRA reveals how open source has transformed software development! From 35% to 70% open source code in apps, vulnerabilities have surged too-154 per app on average in 2025. Managing security & licenses is now mission-critical. Dive into the data & future challenges here: techradar.com/pro/ten-years-of 🔐💻 #OpenSource #Cybersecurity #OSSRA #DevSecOps #SoftwareSecurity #TechTrends #newz

  5. Open source is everywhere, which means security risk is too.⚠️

    Download the 2023 report to learn this year's key findings and how these risks can impact your organization: bit.ly/3SoiMAN

  6. Open Source Security Report: Tim Mackey discusses growing vulnerability issues around the use of improperly updated open source components buff.ly/2Qz5mGg #security #open source #code #Synopsys #SoftwareDevelopment #SBOM #OSSRA