Open Security Foundation

Last updated

The Open Security Foundation (OSF) was a 501(c)(3) non-profit public organization "founded and operated by information security enthusiasts". [1] The OSF managed several projects including the Open Source Vulnerability Database (OSVDB), Data Loss Database (DatalossDB), [2] and Cloutage. [3]

The OSF was established in 2005 to function as a support organization for open source security projects. It was originally conceived and founded to support the OSVDB project, but its scope evolved to provide support for numerous other projects.

The foundation allows organizations and individuals to provide charitable contributions to support open source security projects that provide value to the global community. The foundation also provided guidance, legal, administrative, policy guidelines, and other support to numerous projects.

The Open Security Foundation was conceived by Chris Sullo, Jake Kouns, and Brian Martin in early 2004, and obtained official US 501(c)3 non-profit status in April, 2005 (EIN: 20-1178497). [4]

In 2011, OSF partnered with Risk Based Security to receive commercial support for two of their projects. [5] The OSVDB project announced it was finished on April 5, 2016. [6]

See also

Related Research Articles

Berkeley DB (BDB) is an embedded database software library for key/value data, historically significant in open source software. Berkeley DB is written in C with API bindings for many other programming languages. BDB stores arbitrary key/data pairs as byte arrays, and supports multiple data items for a single key. Berkeley DB is not a relational database, although it has database features including database transactions, multiversion concurrency control and write-ahead logging. BDB runs on a wide variety of operating systems including most Unix-like and Windows systems, and real-time operating systems.

<span class="mw-page-title-main">Apache Subversion</span> Free and open-source software versioning and revision control system

Apache Subversion is a software versioning and revision control system distributed as open source under the Apache License. Software developers use Subversion to maintain current and historical versions of files such as source code, web pages, and documentation. Its goal is to be a mostly compatible successor to the widely used Concurrent Versions System (CVS).

The Open Software Foundation (OSF) was a not-for-profit industry consortium for creating an open standard for an implementation of the operating system Unix. It was formed in 1988 and merged with X/Open in 1996, to become The Open Group.

<span class="mw-page-title-main">X.Org Foundation</span> Nonprofit organization

The X.Org Foundation is a non-profit corporation chartered to research, develop, support, organize, administrate, standardize, promote, and defend a free and open accelerated graphics stack. This includes, but is not limited to, the following projects: DRM, Mesa 3D, Wayland and the X Window System and its primary implementation, the X.Org Server.

The Open Bioinformatics Foundation is a non-profit, volunteer-run organization focused on supporting open source programming in bioinformatics. The mission of the foundation is to support the development of open source toolkits for bioinformatics, organise developer-centric hackathon events and generally assist in the development and promotion of open source software development in the life sciences. The foundation also organises and runs the annual Bioinformatics Open Source Conference, a satellite meeting of the Intelligent Systems for Molecular Biology conference. The foundation participates in the Google Summer of Code, acting as an umbrella organisation for individual bioinformatics-related projects.

The Open Sourced Vulnerability Database (OSVDB) was an independent and open-sourced vulnerability database. The goal of the project was to provide accurate, detailed, current, and unbiased technical information on security vulnerabilities. The project promoted greater and more open collaboration between companies and individuals. The database's motto was "Everything is Vulnerable".

<span class="mw-page-title-main">Mindat.org</span> Non-commercial online mineralogical database

Mindat.org is a non-commercial interactive online database covering minerals across the world. Originally created by Jolyon Ralph as a private project in 1993, it was launched as a community-editable website in October 2000. As of 2023 it is operated by the Hudson Institute of Mineralogy.

The Open Worldwide Application Security Project (OWASP) is an online community that produces freely available articles, methodologies, documentation, tools, and technologies in the fields of IoT, system software and web application security. The OWASP provides free and open resources. It is led by a non-profit called The OWASP Foundation. The OWASP Top 10 - 2021 is the published result of recent research based on comprehensive data compiled from over 40 partner organizations.

A 501(c)(3) organization is a United States corporation, trust, unincorporated association or other type of organization exempt from federal income tax under section 501(c)(3) of Title 26 of the United States Code. It is one of the 29 types of 501(c) nonprofit organizations in the US.

Chris Sullo is a security expert known as the author of Nikto Web Scanner. He is specialized in web-security and pen-testing. He was the co-founder, CFO and Treasurer of Open Security Foundation, and creator of the RVAsec security conference. He currently works as a penetration testing specialist for the IT risk firm Focal Point Data Risk.

<span class="mw-page-title-main">Linux Foundation</span> Non-profit technology consortium to develop the Linux operating system

The Linux Foundation (LF) is a non-profit organization established in 2000 to support Linux development and open-source software projects. In addition to providing a neutral home where Linux kernel development can be fostered, the LF is dedicated to building sustainable ecosystems around open-source projects to accelerate technology development and encourage commercial adoption.

An embedded database system is a database management system (DBMS) which is tightly integrated with an application software; it is embedded in the application. It is a broad technology category that includes:

Candid is an information service specializing in reporting on U.S. nonprofit companies. In 2016, its database provided information on 2.5 million organizations. It is the product of the February 2019 merger of GuideStar with Foundation Center.

A vulnerability database (VDB) is a platform aimed at collecting, maintaining, and disseminating information about discovered computer security vulnerabilities. The database will customarily describe the identified vulnerability, assess the potential impact on affected systems, and any workarounds or updates to mitigate the issue. A VDB will assign a unique identifier to each vulnerability cataloged such as a number or alphanumeric designation. Information in the database can be made available via web pages, exports, or API. A VDB can provide the information for free, for pay, or a combination thereof.

<span class="mw-page-title-main">Cloud Foundry</span> Open source, multi-cloud application platform as a service

Cloud Foundry is an open source, multi-cloud application platform as a service (PaaS) governed by the Cloud Foundry Foundation, a 501(c)(6) organization.

Apache Accumulo is a highly scalable sorted, distributed key-value store based on Google's Bigtable. It is a system built on top of Apache Hadoop, Apache ZooKeeper, and Apache Thrift. Written in Java, Accumulo has cell-level access labels and server-side programming mechanisms. According to DB-Engines ranking, Accumulo is the third most popular NoSQL wide column store behind Apache Cassandra and HBase and the 67th most popular database engine of any type (complete) as of 2018.

<span class="mw-page-title-main">Apache Drill</span> Open-source software framework

Apache Drill is an open-source software framework that supports data-intensive distributed applications for interactive analysis of large-scale datasets. Built chiefly by contributions from developers from MapR, Drill is inspired by Google's Dremel system. Drill is an Apache top-level project. Tom Shiran is the founder of the Apache Drill Project. It was designated an Apache Software Foundation top-level project in December 2016.

<span class="mw-page-title-main">Center for Open Science</span> American nonprofit organization

The Center for Open Science is a non-profit technology organization based in Charlottesville, Virginia with a mission to "increase the openness, integrity, and reproducibility of scientific research." Brian Nosek and Jeffrey Spies founded the organization in January 2013, funded mainly by the Laura and John Arnold Foundation and others.

Sahana Software Foundation is a Los Angeles, California-based non-profit organization founded to promote free and open-source software (FOSS) for disaster and emergency management. The foundation's mission statement is to "save lives by providing information management solutions that enable organizations and communities to better prepare for and respond to disasters." The foundation's Sahana family of software products includes Eden, designed for humanitarian needs management; Vesuvius, focused on the disaster preparedness needs of the medical community; and legacy earlier versions of Sahana software including Krakatoa, descended from the original Sahana code base developed following the 2004 Indian Ocean tsunami. The word "Sahana" means "relief" in Sinhalese, one of two national languages of Sri Lanka.

Lightning Memory-Mapped Database (LMDB) is an embedded transactional database in the form of a key-value store. LMDB is written in C with API bindings for several programming languages. LMDB stores arbitrary key/data pairs as byte arrays, has a range-based search capability, supports multiple data items for a single key and has a special mode for appending records (MDB_APPEND) without checking for consistency. LMDB is not a relational database, it is strictly a key-value store like Berkeley DB and dbm.

References

  1. "OSVDB". OSVDB.
  2. "DataLossDB". DataLossDB. Archived from the original on 2012-01-16. Retrieved 2013-04-04.
  3. "Cloutage - Cloutage". cloutage.org.
  4. "Archived copy" (PDF). Archived from the original (PDF) on 2013-10-29. Retrieved 2013-04-04.{{cite web}}: CS1 maint: archived copy as title (link)
  5. "Welcome to Risk Based Security!". www.riskbasedsecurity.com.
  6. "OSVDB: FIN". OSVDB Blog.[ permanent dead link ]