Bash 2014 - This Is Not a Party

2 minute read time

I can honestly say that although referred to by the media as Shellshocked, I am neither shocked nor awed.
Read More...

Skeleton Key

2 minute read time

A skeleton key is capable of opening any lock regardless of make or type. Do you know anyone who has one? I do. Lots of them.
Read More...

Time for Full Open Source Disclosure

4 minute read time

We are not the first industry to face this challenge. But many are convinced our problem is much smaller than it really is or that it does not exist.
Read More...

Gartner Goes Development-Centric

By Derek Weeks on September 11, 2014 Sonatype Says

1 minute read time

Recently, Gartner published a new research report that says by 2016, “the vast majority of mainstream IT organizations will leverage nontrivial elements of.
Read More...

Part 3 – [ ________ ] is the Best Policy

By David Jones on August 18, 2014 open source survey

3 minute read time

In part 1 and part 2 of the '[ ________ ] is the Best Policy' series, we looked at how open source policies can quite often lead to the wrong type of behavior.
Read More...

Part 2: The Internet of Everything: Code, Cars, and More

3 minute read time

In part one of my blog, It's Just the Way Software is Made, I discussed the realities of how software is made, the birth of agile development, and the.
Read More...

Part 3: The Internet of Everything: Code, Cars, and More

3 minute read time

In part two of my blog 'A Closer Look at Today's Software Supply Chain', I discussed why human-speed supply chain management can’t keep pace with today’s.
Read More...

The Tipping Point: Human Speed vs. Machine Speed

By Derek Weeks on March 05, 2014 Sonatype Says

3 minute read time

What can the financial services industry learn from the U.S.
Read More...

Secure From the Start: Combining Open Source Policies, Practice & Tools

By Derek Weeks on February 26, 2014 CISO

3 minute read time

In short, open source security can't be an after thought.
Read More...