Google is offering $1 million to secure open source software

Kingston
(Image credit: Kingston)

Google has pledged $1 million in funding to the Linux Foundation’s Secure Open Source (SOS) pilot program, which aims to improve the security of critical open source projects.

The program is part of the tech giant's recently announced $10 billion commitment to cybersecurity defense, following a meeting with US President Joe Biden, in August.

According to a FAQ posted on the website of the SOS Rewards program, while it does appear similar to a traditional bug bounty program, the SOS Rewards program has a broader perspective and isn’t looking to reward specific project vulnerabilities.

“SOS rewards a very broad range of improvements that proactively harden critical open source projects and supporting infrastructure against application and supply chain attacks,” further explain members of the Google Open Source Security Team.

Securing the supply chain

The backing for the project comes after it emerged that there’s been a whopping 650% year over year increase in supply chain attacks targeted towards upstream open source public repositories.

The report noted that open source software continues to play an integral part of many critical infrastructure, which also makes it a ripe target for software supply chain attacks.

A few weeks back, Google revealed its financial backing for the Open Source Technology Improvement Fund (OSTIF), to sponsor in-depth security reviews to critical projects vital to the open source ecosystem, as part of OSTIF’s Managed Audit Program (MAP). 

This $1 million commitment to the SOS initiative further expands Google’s commitment to helping secure open source software.

According to the program, rewards range from $505 to $10,000 or more depending on the  scope and impact of the improvements on the larger community.

"We are starting with a $1 million investment and plan to expand the scope of the program based on community feedback," assures the Google Open Source Security Team.  

Via ZDNet

TOPICS
Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
A developer writing code
Open source software is now a multi-billion dollar industry
A woman at a table using a Windows laptop, opposite sits a man, neither show their face
Microsoft will now pay you even more to find security bugs in Copilot
Google Chrome
Linux Foundation brings together top browser makers for more "open" approach
AI PC laptop
Microsoft challenges you to hack its LLM email service
New tech skills projects aim to boost UK cyber defenses
Facebook on laptop
Researcher nets major reward for finding Facebook bug able to unlock the gates to its internal systems
Latest in Software & Services
Windows 11 Start menu layout choices: Grid view
Windows 11 vs Linux for business: which operating system should you embrace?
A phone sitting on a laptop keyboard with the Microsoft Outlook logo on the screen.
Gmail vs Outlook for business: which email system is right for your organization?
Windows 11 logo
Windows 11 Pro vs Windows 11 Home: which version is right for you?
Canva HubSpot
HubSpot and Canva team up to level the creative playing field
a laptop computer
Windows 11 vs ChromeOS for business: Is one better than the other for your needs?
a laptop computer
Windows 11 vs macOS for business: which side are you on?
Latest in News
Google Pixel 9 Pro
Here are the 7 best Pixel 9 and Pixel Watch 3 features landing in March’s Pixel Feature Drop
Bang & Olufsen Beogram 4000C Saint Laurent Rive Droite Edition
Bang & Olufsen's latest reworked turntable is a masterpiece of retro revival, in a breathtaking wooden presentation box
Apple Watch Series 10
Apple unveils new Apple Watch bands – here's what's in the Spring 2025 collection
iPad Air M3
Apple makes one hardware change to the iPad Air that might be the best indicator of its true lightweight tablet intentions
Shure MoveMic 88+ lifestyle image
Shure's tiny MoveMic 88+ gives creators a cheap and easy way to record crystal clear audio on a smartphone
An operator fires a saw blade from a weapon
Call of Duty: Black Ops 6 Season 3 gets two-week delay, will now release in April