ossf / wg-securing-critical-projects

Helping allocate resources to secure the critical open source projects we all depend on.
Apache License 2.0
331 stars 40 forks source link

Quick note: Linux kernel reviews #8

Closed david-a-wheeler closed 2 years ago

david-a-wheeler commented 4 years ago

Quick Note:

The Linux Foundation is already funding some security audits for the Linux kernel via CommunityBridge & OSTIF: https://funding.communitybridge.org/ostif/27e54060-371f-48b6-a8fc-a0aaf96875b0/financial

I thought people in this working group might want to be aware of that!

OSTIF-Derek commented 4 years ago

Thank you David! And to articulate this a little further, these audits are more focused on high level policy and practices.

If we are talking about reviewing actual code in the kernel (which is a great idea!) there are no active projects with OSTIF for that.

Amir-Montazery commented 2 years ago

I suggest closing this issue. Links to audits and more information available on identifying security threats, security reviews repo.

david-a-wheeler commented 2 years ago

Closing per suggestion of @Amir-Montazery