Earn a Michigan Engineering AI Certificate — Stay Ahead of the AI Revolution
Google, IBM & Microsoft Certificates — All in One Plan
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore a research presentation examining current open-source software vulnerability disclosure practices through an analysis of security advisories and bug bounty reports. Gain insights from interviews with 17 OSS maintainers and collaboration with MITRE to address bottlenecked CVEs. Learn about key challenges in vulnerability review processes, critical gaps in the National Vulnerability Database documentation, and ranked difficulties faced by OSS maintainers in vulnerability management. Discover actionable recommendations for enhancing project security, improving review efficiency, and implementing more effective vulnerability disclosure practices across the open-source ecosystem. Understand the current state of OSS security and its implications for maintainers, contributors, vulnerability database administrators, and the broader open-source community.
Syllabus
A Glimpse Into OSS Vulnerability Disclosure Practices - Jessy Ayala, UC Irvine
Taught by
OpenSSF
Reviews
5.0 rating, based on 2 Class Central reviews
Showing Class Central Sort
-
An insightful overview of current perspectives of open-source stakeholders. In addition, focuses on research and ties ideas to practical advice.
-
A good intro to some problems in this space and how CVEs trail their way throughout the OSS ecosystem. Very well spoken, an informative talk :)