Security Advisories์ถœ์ฒ˜: OWASP Blog์กฐํšŒ์ˆ˜ 10

cdxgen and CycloneDX .NET Join GitHub Secure Open Source Fund

By OWASP Blog
2025๋…„ 8์›” 11์ผ
**cdxgen and CycloneDX .NET Join GitHub Secure Open Source Fund**

cdxgen and CycloneDX .NET participated in the GitHub Secure Open Source Fund Strengthening supply-chain security from the inside out. In the domain of supply-chain security, two distinct aspects exist: security within the supply chain and the security of the supply chain itself. The CycloneDX specification, an OWASP flagship project, is supported by a community that maintains an extensive ecosystem of open-source specifications, libraries, and tools, focusing primarily on enhancing security and transparency within the supply chain. Nevertheless, there remains a critical need to strengthen the broader security of the overall supply chain by providing open-source projects and maintainers with substantial funding, essential tools, relevant knowledge, and ongoing support. Introducing the GitHub Secure Open Source Fund (SOSF), purposefully designed to secure fast-growing dependencies critical to large projects and ecosystems...

---

**[devsupporter ํ•ด์„ค]**

์ด ๊ธฐ์‚ฌ๋Š” OWASP Blog์—์„œ ์ œ๊ณตํ•˜๋Š” ์ตœ์‹  ๊ฐœ๋ฐœ ๋™ํ–ฅ์ž…๋‹ˆ๋‹ค. ๊ด€๋ จ ๋„๊ตฌ๋‚˜ ๊ธฐ์ˆ ์— ๋Œ€ํ•ด ๋” ์•Œ์•„๋ณด์‹œ๋ ค๋ฉด ์›๋ณธ ๋งํฌ๋ฅผ ์ฐธ๊ณ ํ•˜์„ธ์š”.