<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0" xml:base="https://opensource.com/">
  <channel>
    <title>Security and privacy</title>
        <link>https://opensource.com/tags/security-and-privacy</link>
        <description/>
    <language>en</language>
    
    <item>
  <title>How I learned the hard way to keep my website updated</title>
  <link>https://opensource.com/article/23/4/my-website-compromised</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;How I learned the hard way to keep my website updated&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/dboth" class="username"&gt;dboth&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2023-04-05T03:00:00-04:00" title="Wednesday, April 5, 2023 - 03:00" class="datetime"&gt;Wed, 04/05/2023 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;My mistake was a good learning experience for me and a reminder that I must not become complacent.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;A few days ago, I received an email from a reader of one of my books. Among other things, he said that he was having trouble getting to one of the websites I'd referenced in…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/23/4/my-website-compromised" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/security_password_chaos_engineer_monster.png?itok=h5denJP5" width="360" height="202" alt="Security monster" title="Security monster" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Wed, 05 Apr 2023 07:00:00 +0000</pubDate>
    <dc:creator>dboth</dc:creator>
    <guid isPermaLink="false">70531 at https://opensource.com</guid>
    </item>
<item>
  <title>Assess security risks in your open source project with Scorecard</title>
  <link>https://opensource.com/article/23/3/open-source-security-scorecard</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;Assess security risks in your open source project with Scorecard&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/snaveen" class="username"&gt;snaveen&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2023-03-21T03:00:00-04:00" title="Tuesday, March 21, 2023 - 03:00" class="datetime"&gt;Tue, 03/21/2023 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;OpenSSF Scorecard helps to ensure your open source software is safe and reliable.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;Software supply chain attacks are becoming increasingly common, and attackers are targeting vulnerabilities in dependencies early in the supply chain to amplify the impact of…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/23/3/open-source-security-scorecard" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/mistake_bug_fix_find_error.png?itok=L2RGRyRm" width="360" height="202" alt="magnifying glass on computer screen, finding a bug in the code" title="magnifying glass on computer screen, finding a bug in the code" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Tue, 21 Mar 2023 07:00:00 +0000</pubDate>
    <dc:creator>snaveen</dc:creator>
    <guid isPermaLink="false">70495 at https://opensource.com</guid>
    </item>
<item>
  <title>3 predictions for open source in confidential computing</title>
  <link>https://opensource.com/article/23/1/open-source-confidential-computing</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;3 predictions for open source in confidential computing&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/dpal" class="username"&gt;Dpal&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2023-01-23T03:00:00-05:00" title="Monday, January 23, 2023 - 03:00" class="datetime"&gt;Mon, 01/23/2023 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;Confidential computing is becoming more widely known by security and developer communities. Look out for these key trends in 2023.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;It's a new year, which means it's time to predict what the next year will bring regarding future tech trends. After guessing the World Cup champion, I feel confident sharing…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/23/1/open-source-confidential-computing" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/security-lock-cloud-safe.png?itok=4X2n9KzK" width="360" height="202" alt="lock on world map" title="lock on world map" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Mon, 23 Jan 2023 08:00:00 +0000</pubDate>
    <dc:creator>Dpal</dc:creator>
    <guid isPermaLink="false">70411 at https://opensource.com</guid>
    </item>
<item>
  <title>A new generation of tools for open source vulnerability management</title>
  <link>https://opensource.com/article/22/12/tools-open-source-vulnerability-management</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;A new generation of tools for open source vulnerability management&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/vdanen" class="username"&gt;vdanen&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2022-12-16T03:00:00-05:00" title="Friday, December 16, 2022 - 03:00" class="datetime"&gt;Fri, 12/16/2022 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;Product security incident response teams require a unique set of tools for the discovery and remediation of a vulnerability or security defect. Open source is the solution.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;Product security incident response teams (PSIRTs) are teams of security professionals that work diligently behind the scenes to protect software products and services of…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/22/12/tools-open-source-vulnerability-management" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/cloud_tools_hardware.png?itok=pMezkr7z" width="360" height="202" alt="tools in the cloud with security" title="tools in the cloud with security" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Fri, 16 Dec 2022 08:00:00 +0000</pubDate>
    <dc:creator>vdanen</dc:creator>
    <guid isPermaLink="false">70350 at https://opensource.com</guid>
    </item>
<item>
  <title>How to address challenges with community metrics</title>
  <link>https://opensource.com/article/22/11/organizational-technical-challenges</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;How to address challenges with community metrics&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/georglink" class="username"&gt;GeorgLink&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2022-11-16T03:00:00-05:00" title="Wednesday, November 16, 2022 - 03:00" class="datetime"&gt;Wed, 11/16/2022 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;Consider this advice for addressing the organizational and technical challenges of implementing community health metrics for your own community.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;The previous two articles in this series looked at open source community health and the metrics used to understand it. They showed examples of how open source communities have…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/22/11/organizational-technical-challenges" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/network_team_career_hand.png?itok=HmDol2uf" width="360" height="202" alt="Shaking hands, networking" title="Shaking hands, networking" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      
          &lt;a title="View user profile." href="https://opensource.com/users/egaleano" class="username"&gt;egaleano&lt;/a&gt;
    </description>
  <pubDate>Wed, 16 Nov 2022 08:00:00 +0000</pubDate>
    <dc:creator>GeorgLink</dc:creator>
    <guid isPermaLink="false">70306 at https://opensource.com</guid>
    </item>
<item>
  <title>Dynamically update TLS certificates in a Golang server without downtime</title>
  <link>https://opensource.com/article/22/9/dynamically-update-tls-certificates-golang-server-no-downtime</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;Dynamically update TLS certificates in a Golang server without downtime&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/savita-ashture" class="username"&gt;Savita Ashture&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2022-10-06T03:00:00-04:00" title="Thursday, October 6, 2022 - 03:00" class="datetime"&gt;Thu, 10/06/2022 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;Configuring an HTTPS server for automatically updated certificates is not as hard as you might think.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;Transport Layer Security (TLS) is a cryptographic protocol based on SSLv3 designed to encrypt and decrypt traffic between two sites. In other words, TLS ensures that you're…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/22/9/dynamically-update-tls-certificates-golang-server-no-downtime" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/server_data_system_admin.png?itok=bkDUsBXJ" width="360" height="202" alt="computer servers processing data" title="computer servers processing data" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Thu, 06 Oct 2022 07:00:00 +0000</pubDate>
    <dc:creator>Savita Ashture</dc:creator>
    <guid isPermaLink="false">70217 at https://opensource.com</guid>
    </item>
<item>
  <title>OpenSSF: on a mission to improve security of open source software</title>
  <link>https://opensource.com/article/22/9/openssf-open-source-software-security</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;OpenSSF: on a mission to improve security of open source software&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/gkamathe" class="username"&gt;gkamathe&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2022-09-26T03:00:00-04:00" title="Monday, September 26, 2022 - 03:00" class="datetime"&gt;Mon, 09/26/2022 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;Developers, businesses, and government agencies are working together to ensure the security of open source software, and you can join them.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;Open source software (OSS), once a niche segment of the development landscape, is now ubiquitous. This growth is fantastic for the open source community. However, as the usage…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/22/9/openssf-open-source-software-security" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/security-lock-cloud-safe.png?itok=4X2n9KzK" width="360" height="202" alt="lock on world map" title="lock on world map" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Mon, 26 Sep 2022 07:00:00 +0000</pubDate>
    <dc:creator>gkamathe</dc:creator>
    <guid isPermaLink="false">70212 at https://opensource.com</guid>
    </item>
<item>
  <title>Security buzzwords to avoid and what to say instead</title>
  <link>https://opensource.com/article/22/9/security-buzzword-alternatives</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;Security buzzwords to avoid and what to say instead&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/seth" class="username"&gt;sethkenlon&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2022-09-20T03:00:00-04:00" title="Tuesday, September 20, 2022 - 03:00" class="datetime"&gt;Tue, 09/20/2022 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;Consider these thoughtful approaches to define what security really means in your open source project.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;Technology is a little famous for coming up with "buzzwords." Other industries do it, too, of course. "Story-driven" and "rules light" tabletop games are a big thing right now…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/22/9/security-buzzword-alternatives" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/security-lock-password.jpg?itok=GtHYk_ML" width="360" height="202" alt="Lock" title="Lock" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Tue, 20 Sep 2022 07:00:00 +0000</pubDate>
    <dc:creator>sethkenlon</dc:creator>
    <guid isPermaLink="false">70186 at https://opensource.com</guid>
    </item>
<item>
  <title>3 steps to protect your home network</title>
  <link>https://opensource.com/article/22/9/protect-home-network</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;3 steps to protect your home network&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/seth" class="username"&gt;sethkenlon&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2022-09-14T03:00:00-04:00" title="Wednesday, September 14, 2022 - 03:00" class="datetime"&gt;Wed, 09/14/2022 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;Who has access to your home network? With the Internet of Things (IoT) commonplace, there are sometimes more services running on your home network than you realize. Protect it…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;The typical setup for Internet connectivity today is for your home to have a router, usually a little physical box located somewhere in your house, that acts as a gateway to…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/22/9/protect-home-network" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/wfh_work_home_laptop_work.png?itok=47B_x0Oo" width="360" height="202" alt="Working from home at a laptop" title="Working from home at a laptop" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      </description>
  <pubDate>Wed, 14 Sep 2022 07:00:00 +0000</pubDate>
    <dc:creator>sethkenlon</dc:creator>
    <guid isPermaLink="false">70184 at https://opensource.com</guid>
    </item>
<item>
  <title>How Tracee solves the lack of BTF information</title>
  <link>https://opensource.com/article/22/9/ebpf-monitor-traffic-tracee</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;How Tracee solves the lack of BTF information&lt;/span&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;a title="View user profile." href="https://opensource.com/users/alegrey91" class="username"&gt;alegrey91&lt;/a&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2022-09-01T03:00:00-04:00" title="Thursday, September 1, 2022 - 03:00" class="datetime"&gt;Thu, 09/01/2022 - 03:00&lt;/time&gt;
&lt;/span&gt;

            &lt;div class="clearfix text-formatted field field--name-field-article-subhead field--type-text-long field--label-hidden field__item"&gt;  &lt;p&gt;By tracing processes using Linux eBPF (Berkeley packet filter) technology, Tracee can correlate collected information and identify malicious behavioral patterns.&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item"&gt;  &lt;p&gt;Tracee is a project by Aqua Security for tracing processes at runtime. By tracing processes using Linux eBPF (Berkeley packet filter) technology, Tracee can correlate…&lt;/p&gt;


&lt;/div&gt;
      
            &lt;div class="field field--name-field-lead-image field--type-entity-reference field--label-hidden field__item"&gt;       &lt;a href="https://opensource.com/article/22/9/ebpf-monitor-traffic-tracee" hreflang="en"&gt;&lt;img loading="lazy" src="https://opensource.com/sites/default/files/styles/article_teaser/public/lead-images/mesh_networking_dots_connected.png?itok=iO6tpO2b" width="360" height="202" alt="Mesh networking connected dots" title="Mesh networking connected dots" class="image-style-article-teaser"&gt;

&lt;/a&gt;
   &lt;/div&gt;
      
          &lt;a title="View user profile." href="https://opensource.com/users/maxgio92" class="username"&gt;maxgio92&lt;/a&gt;
    </description>
  <pubDate>Thu, 01 Sep 2022 07:00:00 +0000</pubDate>
    <dc:creator>alegrey91</dc:creator>
    <guid isPermaLink="false">70149 at https://opensource.com</guid>
    </item>

  </channel>
</rss>
