Advertisement
Promo

Enterprise open source Toolkit

Open-source bug-hunting effort to grow

Joris Evers CNET News

Published: 28 Mar 2007 09:01 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A year after its original launch, a US government-backed project that scans open-source code for flaws is expanding.

The effort, supported by a research contract from the US Department of Homeland Security, is now scanning code of 150 open-source projects, up from the original 50.

"This allows open-source developers to find and resolve defects introduced into the project," David Maxwell, open-source strategist for Coverity, said in a statement. Coverity makes source-code analysis tools and shares the DHS contract with Stanford University and Symantec.

Since the start of the project, 6,000 bugs that were found have been fixed, according to Coverity. About 700 developers are now registered to access the bug data and 35 million lines of code are scanned every day, the company said.

New open-source projects added to the bug hunt effort include "zlib", a compression program used in many applications, as well as FreeRadius, an application that provides authentication.

Coverity has updated its scan.coverity.com website to give a graphical overview of the flaws that were found. The company plans to further increase the number of open-source projects it scans. It has yet to decide which ones.

The bug hunt is part of a three-year "Open Source Hardening Project" dedicated to helping make such software as secure as possible. In January 2006, the US Department of Homeland Security awarded $1.24m to Stanford, Coverity and Symantec to find vulnerabilities in open-source projects.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
8 out of 8 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Video icon

Video

Discussions

J.A. Watson J.A. Watson

Taking Out the Skype Garbage

Sunday 15 November 2009, 6:12 AM

4 comments
CA CA

No thomas..

Sunday 15 November 2009, 2:16 AM

12 comments
roger andre roger andre

Taking Out the Skype Garbage

Saturday 14 November 2009, 8:48 PM

4 comments

Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters