You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
ossf/malicious-packages’s past year of commit activity
A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerability (OSV) format.
The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl…
ossf/wg-best-practices-os-developers’s past year of commit activity
The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for open source developers.
ossf/wg-vulnerability-disclosures’s past year of commit activity
The OpenSSF Vulnerability Disclosures Working Group seeks to help improve the overall security of the open source software ecosystem by helping mature and advoc…
The BEAR (Belonging, Empowerment, Allyship, and Representation) WG, formerly DEI, was formed in December 2023 to enhance representation and cybersecurity workfo…
Our objective is to enable open source maintainers, contributors and end-users to understand and make decisions on the provenance of the code they maintain, pro…