Jump to content

Recommended Posts

Posted

fascinating article - I know that Black Duck are pushing stuff that lets you track whats going on with Open Source in your network .. but this article might make you think about a thing or two ..

 

https://www.out-law.com/en/articles/2017/june/oversight-of-use-of-open-source-code-crucial-as-gdpr-approaches-says-industry-expert

 

I'm on a webinar this afternoon where these folks are partially presenting - I'll feed in anything i find

Posted
fascinating article - I know that Black Duck are pushing stuff that lets you track whats going on with Open Source in your network .. but this article might make you think about a thing or two ..

 

https://www.out-law.com/en/articles/2017/june/oversight-of-use-of-open-source-code-crucial-as-gdpr-approaches-says-industry-expert

 

I'm on a webinar this afternoon where these folks are partially presenting - I'll feed in anything i find

 

The reference to PCI regs is very pertinent. For many of us, ISO27001 and the risk-based approach to information management is the best and most relevant area to look at.

 

It will be interesting to see what is covered on the webinar.

 

Thanks for highlighting this, Mike, and looking forward to the feedback.

Posted

Mainstream open source articles are all really weird. "omg, your software might be out of date", that applies to everything.

 

"Pittinger said this is because there is no system within the open source community to alert businesses when vulnerabilities are identified in the versions of software they are running"

 

Not heard of git pull, or apt update then? Or https://cve.mitre.org/

 

Sounds like a scare story.

  • Thanks 1
Posted

errmm ... I don't know how to admit his but .. well, I've had afew very early starts and the chair was too comfortable and, anyway, 2/3 of my cup of tea is cold ..

 

Maybe bods of a certain age should be banned from webinars, but I di wake up agian before it finished,

.

 

All that aside, the one thing that struck me is the vast amount of open source tucked away in commercial applications. I recently installed the software that comes with Clever Boards - have you looked at the implications for data security of ShareX?? (That didn't go on!!).

Posted
errmm ... I don't know how to admit his but .. well, I've had afew very early starts and the chair was too comfortable and, anyway, 2/3 of my cup of tea is cold ..

 

Maybe bods of a certain age should be banned from webinars, but I di wake up agian before it finished,

.

 

All that aside, the one thing that struck me is the vast amount of open source tucked away in commercial applications. I recently installed the software that comes with Clever Boards - have you looked at the implications for data security of ShareX?? (That didn't go on!!).

 

Remove all the print screen buttons from your keyboards now!

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...