Skip to main content
All Posts By

Kylie Wagar-Dirks

From OpenJS World 2022: Securing the Open Source Ecosystem – Brian Behlendorf

By Blog, OpenJS World

In this recap from the OpenJS World Keynote Series, we’re highlighting a keynote on open source security. To view all of the keynotes from the conference, please visit the OpenJS YouTube Channel.

Brian Behlendorf, General Manager for the Open Source Security Foundation (OpenSSF), presented at OpenJS World 2022 on Securing the Open Source Ecosystem. The presentation began with Brian explaining the problem of supply chain breaches and other factors that are affected by these vulnerabilities. He then follows with what OpenSSF is doing to make efforts in order to work across the supply chain and prevent these types of threats.

The presentation then covers an overview of the mobilization plan. Brian mentions this was planned after a meeting with a U.S federal agency to strengthen security and open source. There is also a quick run-through of the ten different mobilization plans including their goals from security education, risk assessment, incident response, SBOMS, and others. 

Full keynote available here: https://www.youtube.com/watch?v=wxDT-QQh50U 

Main Sections:

0:00 Introduction

1:24 Supply chain breaches

4:33 How OpenSSF Efforts work across the supply chain

11:04 Alpha engagement: Node.js

13:13 Mobilization plan origin story

15:01 Goals identified 

17:13 The open Source software security mobilization plan 

21:14 Initial pledges  

21:52 Get the plan!

Main OpenJS Resources: 

Main Site: https://openjsf.org/ 

Blog: https://openjsf.org/blog/ 

Join: https://openjsf.org/about/join/ 

Certification: https://openjsf.org/certification/

Twitter: https://twitter.com/openjsf

LinkedIn: https://www.linkedin.com/company/openjs-foundation/ 

From OpenJS World 2022: Welcome & Opening Remarks – Robin Ginn & Chris Gervang

By Blog, OpenJS World

In the first recap of our OpenJS World Keynote Series, we’ll highlight the opening remarks from OpenJS World 2022. To view all of the keynotes from the conference, please visit the OpenJS YouTube Channel.

In this recorded keynote, Robin Ginn, executive director of the OpenJS Foundation, and Chris Gervang, Senior Software Engineer, Visualization at Joby Aviation, give the opening remarks at the OpenJS World 2022, held in Austin, TX, June 6-10, 2022. Robin started the keynote by welcoming the audience to take a step back and take a look at their previous work. Robin emphasized the importance of looking back to make an impact without losing perspective. Robin shares a personal experience touching on some historical background and difficulties encountered in the open source community. She then proceeded to emphasize the importance of lifting each other up in communities. 

Chris Gervang followed the talk by giving a brief introduction of himself and sharing some of his work in Open Source. He also welcomes the community members who have joined the OpenJS Foundation. In his keynote, Chris notes the importance of community engagement for project sustainability. Additionally, Chris and Robin announced the Javascript security collaboration and the movement of two projects kepler.gl and VS.GL to the OpenJS Foundation. Robin finished off the presentation by touching on the themes of open governance, stability, and security, and the announcement of the new OpenJS Open Visualization Collaboration Space

Full keynote available here: https://youtu.be/5XYzyItEug4 

Main Sections:

0:00 Introduction 

1:38 Welcome

2:35 Historical perspective

4:33 Opportunity to pause

5:07 Your work matters

9:40 Introducing: Chris Gervang and Joby Aviation

17:52 Community engagement for project sustainability

18:47 Open governance, stability and security

20:39 Announcing Javascript security collaboration space

23:52 JavaScriptLandia

25:57 Thank you!

OpenJS Resources: 

Main Site: https://openjsf.org/ 

Blog: https://openjsf.org/blog/ 

Join: https://openjsf.org/about/join/ 

Certification: https://openjsf.org/certification/

Twitter: https://twitter.com/openjsf

LinkedIn: https://www.linkedin.com/company/r-co…