Morningstar OpenSSF Reports Growth and New Security Resources Amid Rising Cyber Threats
Article Content
- •OpenSSF welcomed five new members to strengthen its cybersecurity initiatives.
- •A new Python Secure Coding Guide was released to support secure software development.
- •The foundation emphasizes the need for community-driven security standards in response to rising threats.
On May 21, 2026, the Open Source Security Foundation (OpenSSF) announced the addition of five new members and the launch of new security resources during its Community Day in Minneapolis. The foundation aims to enhance the security of open source software amid increasing threats to software supply chains. New members include ActiveState, Aikido, Minimus, and TuxCare, contributing to initiatives that address mandatory security standards. The OpenSSF also released a v1.0.0 Python Secure Coding Guide to aid developers in secure coding practices. The foundation emphasizes the urgency of community-driven security standards as the threat landscape evolves. This initiative is part of a broader effort to unify organizations and countries in addressing cybersecurity challenges. The OpenSSF's growth reflects a collective commitment to improving software resilience against sophisticated risks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (11)
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
BlueMoon Exploit Kit Targeting Chrome and Windows by Multiple State Actors A new exploit kit named BlueMoon has been rapidly adopted by at least four espionage groups, primarily linked to China, exploiting vulnerabilities in Google Chrome and Microsoft Windows. The first observed use of BlueMoon was on August 28, 2026, by the China-aligned threat actor TA412, with subsequent adoption by…