Following the roadmap to open-source software security
Opinion: It’s up to oversight bodies such as CISA, government leaders and industry partners to set baseline expectations for OSS use and ensure security.
Joel Krooswyk Infrastructure Security Agency Nist Secure Software Development Framework I Initiative Office Of The National Cyber Software Bill Of Materials
Source: federaltimes.com