How can open source maintainers prove their project’s security posture?
💬 Learn about the OSPS Baseline in our latest What’s in the SOSS? discussion with Ben Cotton & Eddie Knight.
hubs.la/Q03RzjZL0#OpenSSF
ICYMI 👻 Attackers are using AI… and it’s spooky.
Great insights from Hugo Huang + @Canonical on why securing AI is the next battleground and how open source helps.
Read more 👉 hubs.la/Q03R7p9r0#OpenSSF
Stay informed in the fast-moving world of open source security. The October #OpenSSF Newsletter covers AI security, SBOM evolution, Scorecard improvements, and upcoming events built for developers.
Read the full update: hubs.la/Q03QQ-460
📣 Our next Tech Talk is around the corner. Hear from experts from Defense Unicorns, Boeing, and Sonatype as they talk about how OpenSSF project #Zarf simplifies software delivery in disconnected or semi-connected environments.
📅 Sign-up now: openssf.org/resources/tech-t…#openssf
42 is the answer to life, the universe… and everything.
For #OpenSSF, it’s the answer to secure AI development.
Listen to What’s in the SOSS? Episode #42 ft. David A. Wheeler + the launch of LFEL1012
🎧 Listen → hubs.la/Q03NVPC20
🎓 Enroll → hubs.la/Q03NVRSz0
Financial services run on open source, and #OpenSSF is helping make it more secure.
At #OSFF, our community is leading sessions on:
🔹 OSPS Baseline
🔹 CVE & vulnerability data
🔹 AI security
📖Read the blog: openssf.org/blog/2025/10/09/…
🤔 Have you ever wondered who keeps the open infrastructure behind our software running, and at what cost?
A thoughtful piece from the #OpenSSF reflects on the real price of maintaining the systems that keep the #OpenSource world alive.
👉🏼 openssf.org/blog/2025/09/23/…
🎉 The September #OpenSSF Newsletter is live!
CRA + SBOM updates
Golden Egg Awards 🥚
AI/ML security resources
OpenSSF Community Day Europe & India recaps
New podcasts + free courses
openssf.org/newsletter/2025/…
Billion-dollar ecosystems can’t stand on unpaid weekends.
That’s why #OpenSSF and partners are calling for sustainable models to support the infrastructure behind npm, PyPI, Maven Central + more. hubs.la/Q03Kw3_00