FEATURED VIDEO

Sponsored By:
SLIDE SHOWS
Our list of the most innovative executives of the year spotlights the people that are pushing the envelope with new products and channel programs to bring solution providers to new heights.
Find out which executives made the grade and held their own, despite the great IT downturn of 2009.
Most everyone loves Thanksgiving turkeys. But IT industry turkeys? Not so much. We look at 10 examples of 'turkeys' that have disappointed the tech industry this year.
INSIDE CHANNELWEB

Coverity Helps Secure 11 Open Source Projects


By Nathan Eddy, ChannelWeb

5:13 PM EST Thu. Jan. 10, 2008
Software quality and security specialist Coverity yesterday released the names of 11 open source projects where the company's analysis tools identified and fixed potential code flaws. The work was the result of a collaboration also involving Stanford University and the Department of Homeland Security (DHS). Coverity has now certified those projects as secure.

The 11 companies involved in the project are Amanda, NTP, OpenPAM, OpenVPN, Overdose, Perl, PHP, Postfix, Python, Samba, and TCL.

The collaborative venture underscores the importance of maintaining security levels in open source software, says Coverity's open source strategist David Maxwell. "The key thing is that every open source project that chooses to be part of our scan should be applauded," he says.

Because security is an ongoing process that changes as open source projects are adapted and applied to new environments, continuing security analysis is a necessity. "The issue never really ends," he says. "We need to be able to explain to developers, here's the work you need to do and this is the advantage in doing it."

Based on the results, Coverity plans to advance the projects into the next stage of its bug-catching software, Rung 2, which Coverity says has the capability to detect more difficult to locate defects in the source code.

Launched in March 2006, The Open Source Hardening Project, a $300,000 collaborative effort, led Coverity to uncover "significant" security flaws in open source projects -- more than 7,800 identified bugs since the project's start. The company has previously worked to identify security flaws in open source-based Web browser Mozilla.

The basic infrastructure of the Internet is based on open source software, he points out, and is potentially vulnerable to attack. "While you can mitigate that with active defenses like firewalls and spam filters, our approach is a proactive one," he says. "If you fix the bugs in the code, the program can't be attacked in the first place."

 
Channelweb : Promofinder
FEATURED PROMOTIONS
The Big Easy Offer 3.0 - back for a limited time!
The Big Easy Offer gives you choices on Microsoft products and solutions that fit your needs. For every qualifying product yo...
Avnet 0% Lease Promotion
The Avnet Capital Solutions “0% Lease Promotion” has been extended to December 31, 2009! This offering significantly reduces ...
RELATED BLOG >>
Photo
Solution providers can move customers toward a paperless office with a software suite that is quick to search and retrieve information.
ADVERTISEMENT




CHANNEL SERVICES >>