Blog | G5 Cyber Security

Public concerned about security flaws in government open source code

The White House released a draft of an open source code policy for public review earlier this month. The new policy would require agencies to share code with each other and with the public. Some experts are concerned about possible security implications. The public comment period ends on April 11, but some commenters pointed out that public scrutiny by itself will help catch security problems. Open source code poses two additional security problems, said Mike Pittenger, vice president of security strategy at Black Duck Software. “Open source projects are often ubiquitous, so if there’s a vulnerability it creates a target-rich environment for attackers,” he said.”]

Source: https://www.csoonline.com/article/3047641/public-concerned-about-security-flaws-in-government-open-source-code.html

Exit mobile version