• Latest
  • Trending
After Log4j, Open-Source Software Is Now a National Security Issue

After Log4j, Open-Source Software Is Now a National Security Issue

January 14, 2022
ATC Ghana supports Girls-In-ICT Program

ATC Ghana supports Girls-In-ICT Program

April 25, 2023
Vice President Dr. Bawumia inaugurates  ICT Hub

Vice President Dr. Bawumia inaugurates ICT Hub

April 2, 2023
Co-Creation Hub’s edtech accelerator puts $15M towards African startups

Co-Creation Hub’s edtech accelerator puts $15M towards African startups

February 20, 2023
Data Leak Hits Thousands of NHS Workers

Data Leak Hits Thousands of NHS Workers

February 20, 2023
EU Cybersecurity Agency Warns Against Chinese APTs

EU Cybersecurity Agency Warns Against Chinese APTs

February 20, 2023
How Your Storage System Will Still Be Viable in 5 Years’ Time?

How Your Storage System Will Still Be Viable in 5 Years’ Time?

February 20, 2023
The Broken Promises From Cybersecurity Vendors

Cloud Infrastructure Used By WIP26 For Espionage Attacks on Telcos

February 20, 2023
Instagram and Facebook to get paid-for verification

Instagram and Facebook to get paid-for verification

February 20, 2023
YouTube CEO Susan Wojcicki steps down after nine years

YouTube CEO Susan Wojcicki steps down after nine years

February 20, 2023
Inaugural AfCFTA Conference on Women and Youth in Trade

Inaugural AfCFTA Conference on Women and Youth in Trade

September 6, 2022
Instagram fined €405m over children’s data privacy

Instagram fined €405m over children’s data privacy

September 6, 2022
8 Most Common Causes of a Data Breach

5.7bn data entries found exposed on Chinese VPN

August 18, 2022
  • Consumer Watch
  • Kids Page
  • Directory
  • Events
  • Reviews
Wednesday, 29 November, 2023
  • Login
itechnewsonline.com
  • Home
  • Tech
  • Africa Tech
  • InfoSEC
  • Data Science
  • Data Storage
  • Business
  • Opinion
Subscription
Advertise
No Result
View All Result
itechnewsonline.com
No Result
View All Result

After Log4j, Open-Source Software Is Now a National Security Issue

by ITECHNEWS
January 14, 2022
in Leading Stories, Tech
0 0
0
After Log4j, Open-Source Software Is Now a National Security Issue

For years, developers of free, open-source software have been telling anyone who will listen that their projects needs better financial assistance and more oversight. Now, after a number of disastrous incidents involving open-source code, the federal government and Silicon Valley may finally be listening.

A meeting at the White House on Thursday saw executives from some of the tech sector’s biggest companies meet with administration officials to discuss the need for better security in the open-source community. The list of attendees included big names like Google, Facebook, Microsoft, Amazon, Oracle, and Apple, among others.

YOU MAY ALSO LIKE

ATC Ghana supports Girls-In-ICT Program

Vice President Dr. Bawumia inaugurates ICT Hub

Unlike proprietary software, open-source software is free, publicly inspectable, and can be used or modified by anybody. Because of how useful open-source tools can be, big corporations will often utilize them for development purposes. But, unfortunately, open-source projects need oversight and funding to remain secure—and they don’t always get it. For years, open-source developers have complained that their software needs better support from Big Tech and other institutional actors—an issue that is finally gaining some mainstream attention.

It’s not hard to see why the White House has convened its meeting right now. Just a month or so ago, a pernicious bug was found in the popular open-source Apache logging library log4j. The troubled program, which is used by just about everybody, led to widespread panic throughout the tech industry, as companies scrambled to patch the systems and products that relied upon the library for success. (Officials from the Apache Software Foundation were also present at Thursday’s meeting.)

Log4j isn’t the only open-source debacle to occur lately. Just last week, the creator of two widely used software tools decided to inexplicably disable them via a number of bizarre software updates. Marak Squires, the man behind popular JavaScript libraries Faker and Colors, weirdly blitzed the programs and managed to take down thousands of other software projects that relied on them for success.

In short: There’s clearly room for improvement and, thankfully, attendees of the recent White House meeting seem fairly amenable to it. At the meeting, White House national security advisor Jake Sullivan apparently called open-source software a “key national security issue.” Similarly, Google’s President of Global Affairs and Chief Legal Officer Kent Walker published a statement to the company blog on Thursday arguing that he wanted to see better support for the open-source community.

“For too long, the software community has taken comfort in the assumption that open-source software is generally secure due to its transparency and the assumption that ‘many eyes’ were watching to detect and resolve problems,” said Walker. “But in fact, while some projects do have many eyes on them, others have few or none at all.”

In his statement, Walker further suggests increased public and private support for open-source projects, the establishment of security and testing baselines, and the development of a rubric for identifying “critical” projects—the kind that get a lot of use (i.e., probably something like log4j).

What exactly the government and other members of Big Tech have in mind for better open-source security isn’t entirely clear at this point, but the fact that they’re talking about it seems like a good sign.

Source: Lucas Ropek
Via: Gizmodo
Tags: Log4jOpen-Source Software
ShareTweetShare
Plugin Install : Subscribe Push Notification need OneSignal plugin to be installed.

Search

No Result
View All Result

Recent News

ATC Ghana supports Girls-In-ICT Program

ATC Ghana supports Girls-In-ICT Program

April 25, 2023
Vice President Dr. Bawumia inaugurates  ICT Hub

Vice President Dr. Bawumia inaugurates ICT Hub

April 2, 2023
Co-Creation Hub’s edtech accelerator puts $15M towards African startups

Co-Creation Hub’s edtech accelerator puts $15M towards African startups

February 20, 2023

About What We Do

itechnewsonline.com

We bring you the best Premium Tech News.

Recent News With Image

ATC Ghana supports Girls-In-ICT Program

ATC Ghana supports Girls-In-ICT Program

April 25, 2023
Vice President Dr. Bawumia inaugurates  ICT Hub

Vice President Dr. Bawumia inaugurates ICT Hub

April 2, 2023

Recent News

  • ATC Ghana supports Girls-In-ICT Program April 25, 2023
  • Vice President Dr. Bawumia inaugurates ICT Hub April 2, 2023
  • Co-Creation Hub’s edtech accelerator puts $15M towards African startups February 20, 2023
  • Data Leak Hits Thousands of NHS Workers February 20, 2023
  • Home
  • InfoSec
  • Opinion
  • Africa Tech
  • Data Storage

© 2021-2022 iTechNewsOnline.Com - Powered by BackUPDataSystems

No Result
View All Result
  • Home
  • Tech
  • Africa Tech
  • InfoSEC
  • Data Science
  • Data Storage
  • Business
  • Opinion

© 2021-2022 iTechNewsOnline.Com - Powered by BackUPDataSystems

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Go to mobile version