This repository has been archived by the owner on Jan 16, 2025. It is now read-only.
generated from 11ty/eleventy-base-blog
-
Notifications
You must be signed in to change notification settings - Fork 33
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Publish Feb 2024 Security Initiative Report (#486)
* Added 1 file via CloudCannon. * Updated 1 file via CloudCannon. * Updated 1 file via CloudCannon. * Updated 1 file via CloudCannon. * Added 'static/publications/security-initiative-report-february-2024.pdf' via CloudCannon * Updated 2 files via CloudCannon. * Updated 1 file via CloudCannon. * Updated 1 file via CloudCannon. * Updated 1 file via CloudCannon. * Updated 1 file via CloudCannon. * Updated 1 file via CloudCannon. * Updated 1 file via CloudCannon. --------- Co-authored-by: Gracie Gregory <[email protected]>
- Loading branch information
1 parent
29339b9
commit 015e411
Showing
4 changed files
with
20 additions
and
2 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
15 changes: 15 additions & 0 deletions
15
news/second-security-initiative-report-details-rust-security-advancements.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,15 @@ | ||
--- | ||
title: Second Security Initiative Report Details Rust Security Advancements | ||
byline: The Rust Foundation | ||
description: "The Rust Foundation’s Security Initiative was created in 2022 to support security improvements to the Rust programming language ecosystem. In a second progress report, the Foundation details recent Rust security focus areas, accomplishments, and priorities.\_" | ||
date: 2024-02-15T17:00:00Z | ||
tags: | ||
- announcement | ||
- security initiative | ||
- foundation | ||
index: false | ||
layout: layouts/news.njk | ||
--- | ||
DOVER, DELAWARE, USA - February 15, 2024 – The [<u>Rust Foundation</u>](https://foundation.rust-lang.org/), an independent non-profit dedicated to stewarding the [<u>Rust</u>](https://www.rust-lang.org/) programming language, today released a second report detailing the accomplishments of their Security Initiative – an effort to advance the state of security within the Rust programming language ecosystem. | ||
|
||
<div><p>The Rust Foundation <a href="https://foundation.rust-lang.org/news/2022-09-13-rust-foundation-establishes-security-team/"><u>announced its Security Initiative</u></a> in September 2022 with a mission to support and advance the state of security within the Rust Programming language ecosystem. Inaugural support from <a href="https://openssf.org/community/alpha-omega/"><u>OpenSSF’s Alpha-Omega project</u></a> and Rust Foundation Platinum Member, <a href="https://aws.amazon.com/"><u>AWS</u></a> allowed the Foundation to build out its Technology Team (led by the Foundation's Director of Technology, Joel Marcey) in Q1 of 2023 with dedicated security and software engineering expertise. Additional in-kind support from <a href="https://jfrog.com/"><u>JFrog</u></a> and Rust Foundation Platinum Member <a href="https://google.com/"><u>Google</u></a> and infrastructure support from <a href="https://www.wiz.io/"><u>Wiz</u></a> provided the Security Initiative with the necessary resources to carry out impactful work. The Security Initiative requires close collaboration with many Rust Project leaders and working groups.</p><p>In July 2023, the Rust Foundation released its first report on the Security Initiative. Today, they released a new publication covering work carried out in the latter half of 2023. Accomplishments during this period include:</p><div><div><div><ul><li>Completing and releasing Rust Infrastructure and Crates Ecosystem threat models</li><li>Further developing Rust Foundation open source security project <a href="https://github.com/rustfoundation/painter">Painter</a> and releasing new security project, <a href="https://github.com/rustfoundation/typomania">Typomania</a>.</li><li>Utilizing new tools and best practices to identify and address malicious crates</li><li>Helping reduce technical debt within the Rust Project, producing/contributing to security-focused documentation, and elevating security priorities for discussion within the Rust Project.</li></ul><p>... and more!</p></div></div></div><p>The Rust Foundation invites you to download its second Security Initiative Report to learn more about the focus areas and achievements under this effort in Q3 and 4 of 2023. </p><h3><a href="https://foundation.rust-lang.org/static/publications/security-initiative-report-february-2024.pdf"><u>> > Download the Second Security Initiative Report </u></a> </h3><p> </p><p>The Rust Foundation’s Security Initiative is made stronger and more sustainable through diverse corporate sponsorship, and the Foundation is actively seeking contributions from corporations to enable them to continue this vital work into the future. Please contact the Rust Foundation to learn how to support the Security Initiative at <a href="mailto:[email protected]"><u>[email protected]</u></a>.</p><p>For more about the Rust Foundation and to stay up to date on forthcoming activities, visit the organization's <a href="https://foundation.rust-lang.org/"><u>website</u></a>, <a href="https://twitter.com/rust_foundation"><u>Twitter</u></a>, and <a href="https://www.linkedin.com/company/rust-foundation/"><u>LinkedIn</u></a> profiles.</p><h2>About the Rust Foundation </h2><p>The Rust Foundation is an independent non-profit organization dedicated to stewarding the Rust programming language, nurturing the Rust ecosystem, and supporting the set of maintainers governing and developing the project. Learn more at <a href="http://foundation.rust-lang.org/"><u>rustfoundation.org</u></a>.</p></div> |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Binary file not shown.