Security Advisories์ถ์ฒ: OWASP Blog์กฐํ์ 10
cdxgen and CycloneDX .NET Join GitHub Secure Open Source Fund
By OWASP Blog2025๋
8์ 11์ผ
**cdxgen and CycloneDX .NET Join GitHub Secure Open Source Fund**
cdxgen and CycloneDX .NET participated in the GitHub Secure Open Source Fund Strengthening supply-chain security from the inside out. In the domain of supply-chain security, two distinct aspects exist: security within the supply chain and the security of the supply chain itself. The CycloneDX specification, an OWASP flagship project, is supported by a community that maintains an extensive ecosystem of open-source specifications, libraries, and tools, focusing primarily on enhancing security and transparency within the supply chain. Nevertheless, there remains a critical need to strengthen the broader security of the overall supply chain by providing open-source projects and maintainers with substantial funding, essential tools, relevant knowledge, and ongoing support. Introducing the GitHub Secure Open Source Fund (SOSF), purposefully designed to secure fast-growing dependencies critical to large projects and ecosystems...
---
**[devsupporter ํด์ค]**
์ด ๊ธฐ์ฌ๋ OWASP Blog์์ ์ ๊ณตํ๋ ์ต์ ๊ฐ๋ฐ ๋ํฅ์ ๋๋ค. ๊ด๋ จ ๋๊ตฌ๋ ๊ธฐ์ ์ ๋ํด ๋ ์์๋ณด์๋ ค๋ฉด ์๋ณธ ๋งํฌ๋ฅผ ์ฐธ๊ณ ํ์ธ์.
cdxgen and CycloneDX .NET participated in the GitHub Secure Open Source Fund Strengthening supply-chain security from the inside out. In the domain of supply-chain security, two distinct aspects exist: security within the supply chain and the security of the supply chain itself. The CycloneDX specification, an OWASP flagship project, is supported by a community that maintains an extensive ecosystem of open-source specifications, libraries, and tools, focusing primarily on enhancing security and transparency within the supply chain. Nevertheless, there remains a critical need to strengthen the broader security of the overall supply chain by providing open-source projects and maintainers with substantial funding, essential tools, relevant knowledge, and ongoing support. Introducing the GitHub Secure Open Source Fund (SOSF), purposefully designed to secure fast-growing dependencies critical to large projects and ecosystems...
---
**[devsupporter ํด์ค]**
์ด ๊ธฐ์ฌ๋ OWASP Blog์์ ์ ๊ณตํ๋ ์ต์ ๊ฐ๋ฐ ๋ํฅ์ ๋๋ค. ๊ด๋ จ ๋๊ตฌ๋ ๊ธฐ์ ์ ๋ํด ๋ ์์๋ณด์๋ ค๋ฉด ์๋ณธ ๋งํฌ๋ฅผ ์ฐธ๊ณ ํ์ธ์.
