Tuesday Apr 30 | Dark Reading
Insecure Open-Source Libraries Get Renewed Scrutiny
The Open Web Application Security Project adds common software components to its list of threats to spur developers to look more deeply at software libraries As companies increasingly create applications and internal tools on top of open-source building blocks, vulnerabilities in those common components are becoming a serious threat.
Tuesday Apr 30 | InfoWorld
Survey raises specter of massive enterprise software insecurity
The annual Sonatype survey suggests enterprise application developers are leaving huge security holes open with their use of open source compenents You're studiously virus checking your desktop systems, and all your server applications are running on platforms that are regularly updated.