emacs/var/elfeed/db/data/d7/d76f9e39cd65c41d0458c3f1eade4e2d6a08d052
2022-01-03 12:49:32 -06:00

1 line
2.2 KiB
Plaintext
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

<p><img src="https://thumbnails.lbry.com/wqRewF4lE3s" width="480" alt="thumbnail" title="Sudo Show 35: Busting Open Source Security Myths" /></p>Eric and Brandon sit down and look into some of the biggest security myths around Open Source software and one by one debunk them right on the show!<br /><br />[Destination Linux Network](https://destinationlinux.network)<br />[Sudo Show Website](https://sudo.show)<br />[Sponsor: Bitwarden](https://bitwarden.com/dln)<br />[Sponsor: Digital Ocean](https://do.co/dln-mongo)<br />[Sudo Show Swag](https://sudo.show/swag)<br /><br />Contact Us:<br />[DLN Discourse](https://sudo.show/discuss)<br />[Email Us!](mailto:contact@sudo.show)<br />[Sudo Matrix Room](https://sudo.show/matrix)<br /><br />[Heartbleed](https://heartbleed.com)<br />[Sophos: Venom Virtual Machine Escape Bug](https://nakedsecurity.sophos.com/2015/05/14/the-venom-virtual-machine-escape-bug-what-you-need-to-know)<br />[Tidelift Blog: More than Half of Maintainers Have Quit or Considered Quitting, and Heres Why](https://blog.tidelift.com/finding-5-more-than-half-of-maintainers-have-quit-or-considered-quitting-and-heres-why)<br />[Jaeger Tracing](https://www.jaegertracing.io/)<br />[Article: Measure the Health of Open Source Communities](https://www.linux.com/news/measuring-the-health-of-open-source-communities)<br /><br />[Open Source Security Foundation (OpenSSF)](https://openssf.org)<br />[Article: Google Releases New Open Source Seucirty Software Program Scorecards](https://www.zdnet.com/google-amp/article/google-releases-new-open-source-security-software-program-scorecards)<br />[GitHub: OSSF Scorecard](https://github.com/ossf/scorecard)<br />[LFX Insights](https://insights.lfx.linuxfoundation.org/projects)<br /><br />[Tidelift](https://tidelift.com)<br />[Open Collective](https://opencollective.com)<br /><br />## Chapters<br /><br />00:00 Intro<br />00:42 Welcome<br />01:14 Sponsor - Bitwarden<br />02:40 Sponsor - Digital Ocean<br />03:42 OSS Has Vulnerabilities<br />07:45 Free means cheap<br />14:53 Heartbleed Bug<br />20:25 Open Source is Amature<br />24:29 OpenSSF Scorecard<br />33:07 Wrap Up<br />...<br />https://www.youtube.com/watch?v=wqRewF4lE3s