Trail of Bits
OSTIF 2024 Annual Report
- Post published:February 11, 2025
- Post category:ADA LogicsAuditsAWSChainguardCNCFEclipse FoundationFinancialFundraiserNewsOpen SourceOpenSSLOpenVPNQuarksLabSecurityShielderSovereign Tech AgencyTrail of BitsX41-Dsec
2024 was the 9th year of OSTIF, and what an exciting and groundbreaking year it was! Our annual report for 2024 starts with the OSTIF story then moves onto our impact, function, partnerships, funding, and future. We didn’t mince words here- it’s a quick read of less than five minutes.…
Temurin Audit Complete!
- Post published:June 18, 2024
- Post category:AuditsEclipse FoundationFinancialNewsOpen SourceTrail of BitsUncategorized
OSTIF is proud to share the results of our security audit of Temurin. Temurin is an open source project for building high performing Java runtime binaries. With the help of Trail of Bits and the Eclipse Foundation, this project will continue to securely support users who develop Java codes across…
cURL Audit Complete!
- Post published:February 23, 2024
- Post category:AuditsNewsOpen SourceSecurityTrail of BitsUncategorized
OSTIF is proud to share the results of our security audit of cURL HTTP/3. cURL is an open source command line tool and library, the most widely used HTTP client software in the world. This engagement was for the new components of HTTP/3 in cURL. With the help of Trail…
Securing Open-Source Infrastructure with Trail of Bits
- Post published:January 22, 2024
- Post category:AuditsNewsSecurityTrail of Bits
OSTIF started performing security audits in earnest in 2018, tackling a new level of involvement open source security. That same year was OSTIF’s first collaboration with security firm Trail of Bits, working together to complete an audit of RandomX. Since then our two companies have worked together on 12 security…
The Buzz about Mosquitto ‘s Security Audit!
- Post published:November 28, 2023
- Post category:AuditsEclipse FoundationOpen SourceTrail of Bits
Open source project Mosquitto underwent a security audit with OSTIF and Trail of Bits in collaboration with the Eclipse Foundation. The project, which is a message broker for the MQTT protocol, is designed to connect the Internet of Things. Projects that are open to the internet have increased landscape exposure…
In-Flux-ible on bugs- Flux undergoes Security Audit with OSTIF and Trail of Bits
- Post published:November 9, 2023
- Post category:AuditsNewsOpen SourceSecurityTrail of Bits
OSTIF is proud to announce the publication of a security audit on the Kubernetes cluster tooling Flux in collaboration with Trail of Bits. Performed over four engineer weeks, this is the second security audit with OSTIF that Flux has undertaken, the first having taken place in November 2021. Repeated security…
OSTIF Has Completed an Audit of Jetty!
- Post published:October 18, 2023
- Post category:AuditsEclipse FoundationSecurityTrail of Bits
OSTIF is pleased to announce the completion of a security audit of Eclipse Jetty in collaboration with the Eclipse Foundation and Trail of Bits. This audit was a part of a package of work organized and managed by OSTIF to provide security engagements to Eclipse Foundation projects. With funding and…
OSTIF Has Completed A Security Audit of wasmCloud!
- Post published:October 17, 2023
- Post category:NewsSecurityTrail of Bits
OSTIF and wasmCloud collaborated with Trail of Bits on a security audit of the application which is a deployment platform for distributed Wasm application development. The engagement priorities are listed as, but not limited to: wasmCloud sandboxing capabilities of user-provided code, if users were appropriately limited in their accessible features…
JKube Security Audit Completed!
- Post published:September 15, 2023
- Post category:AuditsSecurityTrail of Bits
OSTIF and Trail of Bits coordinated and executed a security audit of Eclipse JKube, an Eclipse Foundation project. Eclipse JKube is an assembly of plugins and libraries for building container images using Docker, JIB or S2I build strategies. The project escorts Java applications to Kubernetes and OpenShift by forcing through…
OSTIF’s Favorite Bug- DragonFly!
- Post published:September 15, 2023
- Post category:AuditsSecurityTrail of BitsUncategorized
This summer, over four engineer weeks, Trail of Bits and OSTIF collaborated on a security audit of DragonFly. A CNCF Incubating Project, DragonFly functions as file distribution for peer-to-peer technologies. Included in the scope was the sub-project Nydus’s repository that works in image distribution. The engagement was outlined and framed…
Topics
- ADA Logics
- Audits
- AWS
- Bug Bounties
- Chainguard
- CNCF
- Eclipse Foundation
- Encryption
- Financial
- Fundraiser
- Include Security
- Kudelski Security
- Linux Kernel
- Monero
- News
- Open Source
- OpenSSL
- OpenVPN
- QuarksLab
- Security
- Shielder
- Sovereign Tech Agency
- Sovereign Tech Agency
- Trail of Bits
- Transparency
- Unbound DNS
- Uncategorized
- VeraCrypt
- WireGuard
- X41-Dsec
Archives
Categories
- ADA Logics
- Audits
- AWS
- Bug Bounties
- Chainguard
- CNCF
- Eclipse Foundation
- Encryption
- Financial
- Fundraiser
- Include Security
- Kudelski Security
- Linux Kernel
- Monero
- News
- Open Source
- OpenSSL
- OpenVPN
- QuarksLab
- Security
- Shielder
- Sovereign Tech Agency
- Sovereign Tech Agency
- Trail of Bits
- Transparency
- Unbound DNS
- Uncategorized
- VeraCrypt
- WireGuard
- X41-Dsec
Archives
- February 2025
- January 2025
- December 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- August 2022
- July 2022
- June 2022
- November 2021
- October 2021
- September 2021
- June 2021
- January 2021
- July 2020
- April 2020
- December 2019
- August 2019
- July 2019
- June 2019
- May 2019
- February 2019
- January 2019
- October 2018
- September 2018
- July 2018
- May 2018
- March 2018
- January 2018
- November 2017
- October 2017
- September 2017
- July 2017
- June 2017
- May 2017
- April 2017
- March 2017
- February 2017
- January 2017
- December 2016
- November 2016
- October 2016
- September 2016
- August 2016
- June 2016
- May 2016
- April 2016
- February 2016
- January 2016
- December 2015
- November 2015
- October 2015
- September 2015
- July 2015
- May 2015