Computing in the real world
SEARCH FOR: IN:
Guest  Level 00    Register Log in

News 

[Internet]
Wednesday 7th May 2008
Google backs open-source security push 10:55AM, Wednesday 7th May 2008
Google has thrown its weight behind Ocert, a volunteer organisation dedicated to tackling security issues in open-source software.

Ocert, or open-source Computer Emergency Response Team, was formed in March and aims to become a repository of patches and bug-fixes for open-source software, ensuring information continues to flow between the community developing the code and the larger vendors distributing it.

According to its own example, small teams which develop crucial bits of code that subsequently turn up in larger applications may not have the means of informing the companies utilising it of the latest bug-fixes. Instead Ocert envisages these coders relaying the information to its website, allowing the site to issue
 
 
ADVERTISEMENT
advisories. Open-source distros can then work with Ocert to ensure all the security flaws are plugged.

As one would expect with open-source, Ocert is a volunteer effort with its operating costs covered by corporate sponsors such as Google, which explained why it's backing the effort on its blog.

"[Ocert] will strive to contact software authors with all security reports and aid in debugging and patching, especially in cases where the author, or the reporter, doesn't have a background in security," says the blog.

"Reliable contacts for projects, publishers, and vendors will be maintained where possible and used for notification when issues arise and fixes are available for mediated issues.

"Additionally, Ocert will aid projects of any size with responses to security incidents, such as server compromises. It is our hope that this initiative will not only aid in remediating security issues in a timely fashion, but also provide a means for additional security contributions to the open source community."

Submit to: Digg  |  Slashdot  |  Del.icio.us  |  Technorati

Related News


IT Careers and Training at Computeach
Typical IT salary in the UK is £39K. Get fantastic IT training to find a career in IT. Apply today!
Bluetooth Stereo A2DP Headset B-Speech Strex (mit
Dieses Bluetooth Stereo (A2DP) Headset mit 3,5 mm Klinkenbuchse ermglicht den Anschlu von allen handelsblichen Kopfhrern mit 3,5 mm Klinkenstecker. Bei eingehenden Anrufen wird die Musikwiede...

IT Careers and Training at Computeach
Typical IT salary in the UK is £39K. Get fantastic IT training to find a career in IT. Apply today!
www.Computeach.co.uk
Bluetooth Stereo A2DP Headset B-Speech Strex (mit
Dieses Bluetooth Stereo (A2DP) Headset mit 3,5 mm Klinkenbuchse ermglicht den Anschlu von allen handelsblichen Kopfhrern mit 3,5 mm Klinkenstecker. Bei eingehenden Anrufen wird die Musikwiede...
hot-wire-telekom
Compare Broadband
Broadband?
Compare 50+ packages
Enter your postcode below:
Powered by:
Top 10 Broadband

Columns

Prolog:

Tim Danton wonders if the possible demise of Microsoft Money is a sign of things to come. › See full Opinion