Industry NewsMEDIUM

OpenSSF - Celebrates New Members and Project Milestones

OSOpenSSF Blog
OpenSSFKusari InspectorAI securitySLSALinux Foundation
🎯

Basically, OpenSSF is welcoming new members and offering free tools to improve open source software security.

Quick Summary

OpenSSF has welcomed new members and launched free tools to enhance open-source security. With significant milestones achieved, the initiative aims to strengthen the security of software projects. This collaborative effort is crucial for the future of open-source software.

What Happened

On March 23, 2026, the Open Source Security Foundation (OpenSSF) celebrated significant achievements during the Open Source SecurityCon Europe. The Foundation welcomed new members, including Helvethink, Spectro Cloud, and Quantrexion, who will actively participate in enhancing the security landscape of open-source software. This gathering highlighted key project milestones and the Foundation's commitment to fostering a secure future for open-source software.

OpenSSF's initiatives are crucial as they address the evolving threats in the digital landscape. Steve Fernandez, General Manager of OpenSSF, emphasized the importance of collaboration among member organizations to create a more secure ecosystem for open source software. This network of contributors is essential for maintaining the integrity and sustainability of open-source projects.

Foundation Updates and Milestones

In the past quarter, OpenSSF has made notable strides in its mission. One of the highlights is a partnership with Kusari, which allows OpenSSF projects to use Kusari Inspector at no cost. This tool enhances visibility into software supply chains, enabling maintainers to conduct proactive security checks at the pull request level.

Additionally, the SLSA project achieved Graduated status, signifying its maturity and broad adoption as a framework for ensuring supply chain integrity. The Gemara Project also released its first white paper, outlining a framework for integrating security-as-code principles into the software development lifecycle. These milestones reflect OpenSSF's commitment to advancing security practices in the open-source community.

Industry Impact

The involvement of new members like Helvethink, Spectro Cloud, and Quantrexion signifies a growing recognition of the importance of open-source security. These companies are committed to participating in working groups and contributing to initiatives focused on supply chain integrity and secure-by-design principles. Their participation enhances the overall security posture of the open-source ecosystem.

Moreover, OpenSSF's recent $12.5 million grant funding from leading AI providers underscores the industry's support for sustainable AI security solutions. This funding will empower maintainers and contribute to building long-term security solutions that benefit the entire community.

What's Next

As OpenSSF continues to grow, it plans to host several upcoming events, including the Open Source Summit North America and Community Days in both North America and Europe. These gatherings will provide opportunities for collaboration and knowledge sharing among members and the broader open-source community.

For those interested in contributing, OpenSSF encourages participation in its working groups and projects. The Foundation's commitment to transparency and community-driven innovation is vital for the future of open-source security. By joining forces, members can help shape a more secure and resilient digital landscape.

🔒 Pro insight: The influx of new members and funding highlights a pivotal shift towards prioritizing open-source security in the face of rising threats.

Original article from

OpenSSF Blog · OpenSSF

Read Full Article

Related Pings

LOWIndustry News

Industry Trailblazer - Roya Gordon's Inspiring Career Journey

Roya Gordon's inspiring career journey from the U.S. Navy to Nozomi Networks is paving the way for young women in cybersecurity. Her story highlights the importance of diversity in tech. Join her mission to empower the next generation!

CyberWire Daily·
LOWIndustry News

Industry Insights - CyberWire Daily Celebrates 10 Years

The CyberWire Daily podcast celebrates its 10th anniversary with a special edition. Hosts reflect on its journey and impact on the cybersecurity community. This milestone highlights the podcast's evolution from startup to trusted resource.

CyberWire Daily·
MEDIUMIndustry News

Industry - Nations as Cybersecurity Insurers of Last Resort?

The UK government's loan to Jaguar Land Rover raises concerns about state intervention in cybersecurity. Experts warn this could set a dangerous precedent for future incidents. As cyber risks grow, a structured approach is essential for effective management.

CSO Online·
MEDIUMIndustry News

Oasis Security - Raises $120 Million for Identity Management

Oasis Security has raised $120 million to enhance its non-human identity management platform. This funding will support R&D and help secure machine identities for Fortune 500 companies. As businesses adopt more AI tools, effective identity management becomes critical to reduce security risks.

SC Media·
MEDIUMIndustry News

Friday Squid Blogging: Jumbo Flying Squid in the South Pacific

Friday Squid Blogging: Jumbo Flying Squid in the South Pacific

Schneier on Security·
MEDIUMIndustry News

Water Utilities - Strengthening Cybersecurity Through Cooperation

Water utilities are joining forces to tackle cybersecurity challenges. By sharing information and strategies, they aim to strengthen their defenses. This collaborative approach is crucial for protecting vital water services.

CSO Online·