SlideShare a Scribd company logo
Open Source Insight:
GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018
Open Source Rookies
By Fred Bals, Senior Content Strategist
Cybersecurity News This Week
A big news week for Synopsys and Black Duck as Gartner
releases the 2018 Gartner Magic Quadrant for Application
Security Testing and the 2018 Open Source Rookies of the
Year are announced. More on these stories and the hottest open
source security and cybersecurity news in this week’s Open
Source Insight!
• Synopsys maintains leadership position in the 2018
Gartner Magic Quadrant for Application Security
Testing
• GitHub inspection discovers 4 million flaws In
public code
• The best open source rookies of 2018
• Synopsys reveals its open-source rookies of the
year
• What and who are the Open Source Rookies of the
Year?
Open Source News Stories
• What it takes to be an Open Source Rookie
• With much of the Data Center stack open
source, security is a special challenge
• Safety first: the auto industry looks to open
source to uncover new sources of revenue
• Weighing the pros and cons of open sourcing
election software
Open Source News Stories
Synopsys maintains leadership position in the 2018 Gartner
Magic Quadrant for Application Security Testing
via Synopsys Software Integrity blog: I’m proud to report that the
2018 Gartner Magic Quadrant for Application Security Testing has
positioned Synopsys as a leader for the second consecutive year. This
designation clearly illustrates our growing vision and ability to execute
on our solutions. For more information, download your copy of
the 2018 Gartner Magic Quadrant for Application Security Testing.
GitHub inspection discovers 4 million
flaws In public code
via Silicon UK: “In general, we support initiatives like GitHub’s Security Alerts
as they aim to help open source project teams produce more secure code,”
explained Tim Mackey, technology evangelist at open source code security
experts Black Duck by Synopsys. “Open source is pervasive and it plays an
increasingly critical role in the software ecosystem, so any measures that
bolster open source security should be applauded,” he added. It should be
noted that Black Duck by Synopsys does provide a similar free service for
open source project teams called CoPilot.
The best open source rookies of 2018
via Infoworld: Over the last decade, Black Duck by Synopsys has
recognized some of the most innovative and influential open source
projects launched each year. This recognition is a tribute to the
success and momentum of these projects, and affirmation of their
prospects going forward. We’ve seen honorees like Kubernetes
(2014), Docker (2013), Ansible (2012), Bootstrap (2011), NuGet
(2011), and OpenStack (2010) evolve to become some of the most
influential open source projects in the market. We expect this year’s
rookies to be no exception.
Synopsys reveals its open-source
rookies of the year
via SD Times: Synopsys is continuing on with Black Duck’s tradition
of naming Open Source Rookies of the Year. The decade-long
tradition was established by Black Duck and designed to recognized
the latest and greatest open-source projects. Synopsys announced it
had acquired Black Duck Software in December of last year. The
Open Source Rookies represent the top open source projects that
were initiated in 2017. The projects cover a range of different areas
including autonomous driving, scalable blockchain, and virtual
network functions orchestrations, personal security, and relationship
management.
What and who are the Open Source
Rookies of the Year?
via Synopsys Software Integrity blog: At Black
Duck by Synopsys, we work with the community
and organizations to understand how the open
source community is thinking about technology and
the future. As part of that process, we view our
connection to the open source community as a key
component to understanding both where the
development community is and where the open
source community is moving next.
What it takes to be an
Open Source Rookie
via Black Duck blog: 2018 is the Rookies report’s
10th anniversary, and this year’s honorees
exemplify the core tenets of open source. They
push the boundaries of technological innovation,
build on the contributions of projects before them,
lay the foundation for projects that succeed them
to innovate, and engage the community for
material contributions to—and strategic guidance
on—the projects themselves.
via Data Center Knowledge: Even commercial
software is not immune to the open source trend.
According to Synopsys-owned Black Duck Software,
which tracks open source code, open source
components are now present in 96 percent of
commercial applications. Open source components
make development faster and cheaper for both
commercial software shops and in-house teams. "All
of these things lead to a stack of open source," said
Tim Mackey, senior technical evangelist for Black
Duck. But there's a downside to the spread of open
source code, and that downside is patch management.
With much of the Data Center stack open
source, security is a special challenge
via Linux Foundation: Banking, Commerce, Media, Agriculture,
Energy and other massive industry sectors are wholly dependent on
the widespread use of open source software to function. Of course,
each industry is different and faces its own set of unique challenges
and requirements. In particular, the automotive industry is rightfully
cautious about all software, not just open source. However, the
industry has come to trust proven platforms that have shown results
over time, rather than novel capabilities.
Safety first: the auto industry looks to open source to
uncover new sources of revenue
via Black Duck blog: Open source voting applications
are already playing a role in elections in New
Hampshire. San Francisco, Los Angeles, and Travis
County, Texas are allocating funds to move toward
open source voting systems as well. If the FEC does
replace proprietary software with open source, it
should consider automated security tools in addition to
the open source community to provide a more
complete application security picture.
Weighing the pros and cons of open
sourcing election software
Open Source Insight:GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open Source Rookies

More Related Content

What's hot (20)

PPTX
Open Source: The Legal & Security Implications for the Connected Car
Jerika Phelps
 
PPTX
Open Source Insight: Black Duck Announces OpsSight for DevOps Open Source Sec...
Black Duck by Synopsys
 
PPTX
Keynote - Lou Shipley
Jerika Phelps
 
PDF
Strategies to Reap the Benefits of Software Patents in an Open Source Softwar...
Black Duck by Synopsys
 
PPTX
Software Security Assurance for Devops
Jerika Phelps
 
PDF
Marcel van der Heijden - SpeedInvest & Aircloak - EU GDPR & Data Privacy Comp...
Burton Lee
 
PPT
The Case for Continuous Open Source Management
Black Duck by Synopsys
 
PPTX
Software Security Assurance for DevOps
Black Duck by Synopsys
 
PPTX
Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut...
Black Duck by Synopsys
 
PPTX
Welcome & The State of Open Source Security
Jerika Phelps
 
PDF
Buyer and Seller Perspectives on Open Source in Tech Contracts
Black Duck by Synopsys
 
PPTX
Winning the Cage-Match: How to Successfully Navigate Open Source Software iss...
Black Duck by Synopsys
 
PDF
DevSecOps: The Open Source Way
Black Duck by Synopsys
 
PDF
The Intersection Between Open Source and Cybersecurity
Black Duck by Synopsys
 
PDF
Webinar–The 2019 Open Source Year in Review
Synopsys Software Integrity Group
 
PDF
Software Security Assurance for DevOps
Black Duck by Synopsys
 
PDF
Webinar–You've Got Your Open Source Audit Report–Now What?
Synopsys Software Integrity Group
 
PDF
Leveraging Black Duck Hub to Maximize Focus - Entersekt's approach to automat...
Jerika Phelps
 
PDF
Shift Risk Left: Security Considerations When Migrating Apps to the Cloud
Black Duck by Synopsys
 
PDF
Webinar–Why All Open Source Scans Aren't Created Equal
Synopsys Software Integrity Group
 
Open Source: The Legal & Security Implications for the Connected Car
Jerika Phelps
 
Open Source Insight: Black Duck Announces OpsSight for DevOps Open Source Sec...
Black Duck by Synopsys
 
Keynote - Lou Shipley
Jerika Phelps
 
Strategies to Reap the Benefits of Software Patents in an Open Source Softwar...
Black Duck by Synopsys
 
Software Security Assurance for Devops
Jerika Phelps
 
Marcel van der Heijden - SpeedInvest & Aircloak - EU GDPR & Data Privacy Comp...
Burton Lee
 
The Case for Continuous Open Source Management
Black Duck by Synopsys
 
Software Security Assurance for DevOps
Black Duck by Synopsys
 
Open Source Insight: Who Owns Linux? TRITON Attack, App Security Testing, Fut...
Black Duck by Synopsys
 
Welcome & The State of Open Source Security
Jerika Phelps
 
Buyer and Seller Perspectives on Open Source in Tech Contracts
Black Duck by Synopsys
 
Winning the Cage-Match: How to Successfully Navigate Open Source Software iss...
Black Duck by Synopsys
 
DevSecOps: The Open Source Way
Black Duck by Synopsys
 
The Intersection Between Open Source and Cybersecurity
Black Duck by Synopsys
 
Webinar–The 2019 Open Source Year in Review
Synopsys Software Integrity Group
 
Software Security Assurance for DevOps
Black Duck by Synopsys
 
Webinar–You've Got Your Open Source Audit Report–Now What?
Synopsys Software Integrity Group
 
Leveraging Black Duck Hub to Maximize Focus - Entersekt's approach to automat...
Jerika Phelps
 
Shift Risk Left: Security Considerations When Migrating Apps to the Cloud
Black Duck by Synopsys
 
Webinar–Why All Open Source Scans Aren't Created Equal
Synopsys Software Integrity Group
 

Similar to Open Source Insight: GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open Source Rookies (20)

PPTX
Open Source Insight: 2017 Top 10 IT Security Stories, Breaches, and Predictio...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Happy Birthday Open Source and Application Security for ...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Open Source 360 Survey, DockerCon 2017, & More on the Cl...
Black Duck by Synopsys
 
PPTX
Open Source Insight: OWASP Top 10, Red Hat OpenShift News, & Gmail Phishing Scam
Black Duck by Synopsys
 
PDF
(In)security in Open Source
Shane Coughlan
 
PPTX
Open Source Insight: Security Breaches and Cryptocurrency Dominating News
Black Duck by Synopsys
 
PDF
Open Source Software Development by TLV Partners
Roy Leiser
 
PDF
Open source presentation
Rona Segev Gal
 
PPTX
Open Source Insight: Synopsys Moves into Open Source Security with Black Duck...
Black Duck by Synopsys
 
PPTX
Open Source Insight: CVE-2017-2636 Vuln of the Week & UK National Cyber Secur...
Black Duck by Synopsys
 
PDF
Open Source
Liron Zighelnic
 
PPTX
Open Source Insight: Global Response to COSRI 2017 Open Source Security and R...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Hub Detect & DevOps, OSS for Cars & 1.8 M Voter Info Leaked
Black Duck by Synopsys
 
PPTX
Open Source Insight: HBO, Voting Machines & Car Washes Hacked & Black Hat /...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Drupageddon, Heartbleed Problems & Open Source 360 Surve...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Hospital, Medical Devices, Banking, and Automotive Cyber...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Samba Vulnerability, Connected Car Risks, and Are You R...
Black Duck by Synopsys
 
PPTX
OSS - enterprise adoption strategy and governance
Prabir Kr Sarkar
 
PPTX
Introduction To Open Source
Uchechukwu Obimma
 
PPTX
Open Source Insight: AI for Open Source Management, IoT Time Bombs, Ready for...
Black Duck by Synopsys
 
Open Source Insight: 2017 Top 10 IT Security Stories, Breaches, and Predictio...
Black Duck by Synopsys
 
Open Source Insight: Happy Birthday Open Source and Application Security for ...
Black Duck by Synopsys
 
Open Source Insight: Open Source 360 Survey, DockerCon 2017, & More on the Cl...
Black Duck by Synopsys
 
Open Source Insight: OWASP Top 10, Red Hat OpenShift News, & Gmail Phishing Scam
Black Duck by Synopsys
 
(In)security in Open Source
Shane Coughlan
 
Open Source Insight: Security Breaches and Cryptocurrency Dominating News
Black Duck by Synopsys
 
Open Source Software Development by TLV Partners
Roy Leiser
 
Open source presentation
Rona Segev Gal
 
Open Source Insight: Synopsys Moves into Open Source Security with Black Duck...
Black Duck by Synopsys
 
Open Source Insight: CVE-2017-2636 Vuln of the Week & UK National Cyber Secur...
Black Duck by Synopsys
 
Open Source
Liron Zighelnic
 
Open Source Insight: Global Response to COSRI 2017 Open Source Security and R...
Black Duck by Synopsys
 
Open Source Insight: Hub Detect & DevOps, OSS for Cars & 1.8 M Voter Info Leaked
Black Duck by Synopsys
 
Open Source Insight: HBO, Voting Machines & Car Washes Hacked & Black Hat /...
Black Duck by Synopsys
 
Open Source Insight: Drupageddon, Heartbleed Problems & Open Source 360 Surve...
Black Duck by Synopsys
 
Open Source Insight: Hospital, Medical Devices, Banking, and Automotive Cyber...
Black Duck by Synopsys
 
Open Source Insight: Samba Vulnerability, Connected Car Risks, and Are You R...
Black Duck by Synopsys
 
OSS - enterprise adoption strategy and governance
Prabir Kr Sarkar
 
Introduction To Open Source
Uchechukwu Obimma
 
Open Source Insight: AI for Open Source Management, IoT Time Bombs, Ready for...
Black Duck by Synopsys
 
Ad

More from Black Duck by Synopsys (18)

PDF
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...
Black Duck by Synopsys
 
PDF
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...
Black Duck by Synopsys
 
PDF
Open-Source- Sicherheits- und Risikoanalyse 2018
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi...
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical Guide
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your Deal
Black Duck by Synopsys
 
PDF
FLIGHT Amsterdam Presentation - Open Source License Management in the Black D...
Black Duck by Synopsys
 
PPT
FLIGHT Amsterdam Presentation - From Protex to Hub
Black Duck by Synopsys
 
PDF
Open Source Rookies and Community
Black Duck by Synopsys
 
PPTX
Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f...
Black Duck by Synopsys
 
PDF
20 Billion Reasons for IoT Security
Black Duck by Synopsys
 
PPTX
Open Source Insight: IoT Security, Tech Due Diligence, and Software Security ...
Black Duck by Synopsys
 
PPTX
Open Source Insight: Banking and Open Source, 2018 CISO Report, GDPR Looming
Black Duck by Synopsys
 
PPTX
Open Source Insight: Meltdown, Spectre Security Flaws “Impact Everything”
Black Duck by Synopsys
 
PPTX
Making the Strategic Shift to Open Source at Fujitsu Network Communication
Black Duck by Synopsys
 
Flight WEST 2018 Presentation - A Buyer Investor Playbook for Successfully Na...
Black Duck by Synopsys
 
FLIGHT WEST 2018 Presentation - Continuous Monitoring of Open Source Componen...
Black Duck by Synopsys
 
FLIGHT WEST 2018 Presentation - Open Source License Management in Black Duck Hub
Black Duck by Synopsys
 
FLIGHT WEST 2018 - Presentation - SCA 101: How to Manage Open Source Security...
Black Duck by Synopsys
 
FLIGHT WEST 2018 Presentation - Integrating Security into Your Development an...
Black Duck by Synopsys
 
Open-Source- Sicherheits- und Risikoanalyse 2018
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Open Source, IP and Trade Secrets: An Impossi...
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Data Breaches and the Law: A Practical Guide
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Don’t Let Open Source Software Kill Your Deal
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - Open Source License Management in the Black D...
Black Duck by Synopsys
 
FLIGHT Amsterdam Presentation - From Protex to Hub
Black Duck by Synopsys
 
Open Source Rookies and Community
Black Duck by Synopsys
 
Open Source Insight: Big Data Breaches, Costly Cyberattacks, Vuln Detection f...
Black Duck by Synopsys
 
20 Billion Reasons for IoT Security
Black Duck by Synopsys
 
Open Source Insight: IoT Security, Tech Due Diligence, and Software Security ...
Black Duck by Synopsys
 
Open Source Insight: Banking and Open Source, 2018 CISO Report, GDPR Looming
Black Duck by Synopsys
 
Open Source Insight: Meltdown, Spectre Security Flaws “Impact Everything”
Black Duck by Synopsys
 
Making the Strategic Shift to Open Source at Fujitsu Network Communication
Black Duck by Synopsys
 
Ad

Recently uploaded (20)

PDF
CIFDAQ Weekly Market Wrap for 11th July 2025
CIFDAQ
 
PPTX
"Autonomy of LLM Agents: Current State and Future Prospects", Oles` Petriv
Fwdays
 
PDF
CIFDAQ Market Insights for July 7th 2025
CIFDAQ
 
PDF
Transcript: New from BookNet Canada for 2025: BNC BiblioShare - Tech Forum 2025
BookNet Canada
 
PDF
Bitcoin for Millennials podcast with Bram, Power Laws of Bitcoin
Stephen Perrenod
 
PDF
DevBcn - Building 10x Organizations Using Modern Productivity Metrics
Justin Reock
 
PDF
"AI Transformation: Directions and Challenges", Pavlo Shaternik
Fwdays
 
PPTX
From Sci-Fi to Reality: Exploring AI Evolution
Svetlana Meissner
 
PDF
Newgen 2022-Forrester Newgen TEI_13 05 2022-The-Total-Economic-Impact-Newgen-...
darshakparmar
 
PDF
Using FME to Develop Self-Service CAD Applications for a Major UK Police Force
Safe Software
 
PDF
Blockchain Transactions Explained For Everyone
CIFDAQ
 
PPTX
Building Search Using OpenSearch: Limitations and Workarounds
Sease
 
PDF
July Patch Tuesday
Ivanti
 
PDF
From Code to Challenge: Crafting Skill-Based Games That Engage and Reward
aiyshauae
 
PDF
Achieving Consistent and Reliable AI Code Generation - Medusa AI
medusaaico
 
PDF
Jak MŚP w Europie Środkowo-Wschodniej odnajdują się w świecie AI
dominikamizerska1
 
PDF
Biography of Daniel Podor.pdf
Daniel Podor
 
PPTX
COMPARISON OF RASTER ANALYSIS TOOLS OF QGIS AND ARCGIS
Sharanya Sarkar
 
PDF
[Newgen] NewgenONE Marvin Brochure 1.pdf
darshakparmar
 
PPTX
Webinar: Introduction to LF Energy EVerest
DanBrown980551
 
CIFDAQ Weekly Market Wrap for 11th July 2025
CIFDAQ
 
"Autonomy of LLM Agents: Current State and Future Prospects", Oles` Petriv
Fwdays
 
CIFDAQ Market Insights for July 7th 2025
CIFDAQ
 
Transcript: New from BookNet Canada for 2025: BNC BiblioShare - Tech Forum 2025
BookNet Canada
 
Bitcoin for Millennials podcast with Bram, Power Laws of Bitcoin
Stephen Perrenod
 
DevBcn - Building 10x Organizations Using Modern Productivity Metrics
Justin Reock
 
"AI Transformation: Directions and Challenges", Pavlo Shaternik
Fwdays
 
From Sci-Fi to Reality: Exploring AI Evolution
Svetlana Meissner
 
Newgen 2022-Forrester Newgen TEI_13 05 2022-The-Total-Economic-Impact-Newgen-...
darshakparmar
 
Using FME to Develop Self-Service CAD Applications for a Major UK Police Force
Safe Software
 
Blockchain Transactions Explained For Everyone
CIFDAQ
 
Building Search Using OpenSearch: Limitations and Workarounds
Sease
 
July Patch Tuesday
Ivanti
 
From Code to Challenge: Crafting Skill-Based Games That Engage and Reward
aiyshauae
 
Achieving Consistent and Reliable AI Code Generation - Medusa AI
medusaaico
 
Jak MŚP w Europie Środkowo-Wschodniej odnajdują się w świecie AI
dominikamizerska1
 
Biography of Daniel Podor.pdf
Daniel Podor
 
COMPARISON OF RASTER ANALYSIS TOOLS OF QGIS AND ARCGIS
Sharanya Sarkar
 
[Newgen] NewgenONE Marvin Brochure 1.pdf
darshakparmar
 
Webinar: Introduction to LF Energy EVerest
DanBrown980551
 

Open Source Insight: GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open Source Rookies

  • 1. Open Source Insight: GitHub Finds 4M Flaws, IAST Magic Quadrant, 2018 Open Source Rookies By Fred Bals, Senior Content Strategist
  • 2. Cybersecurity News This Week A big news week for Synopsys and Black Duck as Gartner releases the 2018 Gartner Magic Quadrant for Application Security Testing and the 2018 Open Source Rookies of the Year are announced. More on these stories and the hottest open source security and cybersecurity news in this week’s Open Source Insight!
  • 3. • Synopsys maintains leadership position in the 2018 Gartner Magic Quadrant for Application Security Testing • GitHub inspection discovers 4 million flaws In public code • The best open source rookies of 2018 • Synopsys reveals its open-source rookies of the year • What and who are the Open Source Rookies of the Year? Open Source News Stories
  • 4. • What it takes to be an Open Source Rookie • With much of the Data Center stack open source, security is a special challenge • Safety first: the auto industry looks to open source to uncover new sources of revenue • Weighing the pros and cons of open sourcing election software Open Source News Stories
  • 5. Synopsys maintains leadership position in the 2018 Gartner Magic Quadrant for Application Security Testing via Synopsys Software Integrity blog: I’m proud to report that the 2018 Gartner Magic Quadrant for Application Security Testing has positioned Synopsys as a leader for the second consecutive year. This designation clearly illustrates our growing vision and ability to execute on our solutions. For more information, download your copy of the 2018 Gartner Magic Quadrant for Application Security Testing.
  • 6. GitHub inspection discovers 4 million flaws In public code via Silicon UK: “In general, we support initiatives like GitHub’s Security Alerts as they aim to help open source project teams produce more secure code,” explained Tim Mackey, technology evangelist at open source code security experts Black Duck by Synopsys. “Open source is pervasive and it plays an increasingly critical role in the software ecosystem, so any measures that bolster open source security should be applauded,” he added. It should be noted that Black Duck by Synopsys does provide a similar free service for open source project teams called CoPilot.
  • 7. The best open source rookies of 2018 via Infoworld: Over the last decade, Black Duck by Synopsys has recognized some of the most innovative and influential open source projects launched each year. This recognition is a tribute to the success and momentum of these projects, and affirmation of their prospects going forward. We’ve seen honorees like Kubernetes (2014), Docker (2013), Ansible (2012), Bootstrap (2011), NuGet (2011), and OpenStack (2010) evolve to become some of the most influential open source projects in the market. We expect this year’s rookies to be no exception.
  • 8. Synopsys reveals its open-source rookies of the year via SD Times: Synopsys is continuing on with Black Duck’s tradition of naming Open Source Rookies of the Year. The decade-long tradition was established by Black Duck and designed to recognized the latest and greatest open-source projects. Synopsys announced it had acquired Black Duck Software in December of last year. The Open Source Rookies represent the top open source projects that were initiated in 2017. The projects cover a range of different areas including autonomous driving, scalable blockchain, and virtual network functions orchestrations, personal security, and relationship management.
  • 9. What and who are the Open Source Rookies of the Year? via Synopsys Software Integrity blog: At Black Duck by Synopsys, we work with the community and organizations to understand how the open source community is thinking about technology and the future. As part of that process, we view our connection to the open source community as a key component to understanding both where the development community is and where the open source community is moving next.
  • 10. What it takes to be an Open Source Rookie via Black Duck blog: 2018 is the Rookies report’s 10th anniversary, and this year’s honorees exemplify the core tenets of open source. They push the boundaries of technological innovation, build on the contributions of projects before them, lay the foundation for projects that succeed them to innovate, and engage the community for material contributions to—and strategic guidance on—the projects themselves.
  • 11. via Data Center Knowledge: Even commercial software is not immune to the open source trend. According to Synopsys-owned Black Duck Software, which tracks open source code, open source components are now present in 96 percent of commercial applications. Open source components make development faster and cheaper for both commercial software shops and in-house teams. "All of these things lead to a stack of open source," said Tim Mackey, senior technical evangelist for Black Duck. But there's a downside to the spread of open source code, and that downside is patch management. With much of the Data Center stack open source, security is a special challenge
  • 12. via Linux Foundation: Banking, Commerce, Media, Agriculture, Energy and other massive industry sectors are wholly dependent on the widespread use of open source software to function. Of course, each industry is different and faces its own set of unique challenges and requirements. In particular, the automotive industry is rightfully cautious about all software, not just open source. However, the industry has come to trust proven platforms that have shown results over time, rather than novel capabilities. Safety first: the auto industry looks to open source to uncover new sources of revenue
  • 13. via Black Duck blog: Open source voting applications are already playing a role in elections in New Hampshire. San Francisco, Los Angeles, and Travis County, Texas are allocating funds to move toward open source voting systems as well. If the FEC does replace proprietary software with open source, it should consider automated security tools in addition to the open source community to provide a more complete application security picture. Weighing the pros and cons of open sourcing election software