Series 11 – Episode 4 – Preventing future Log4J catastrophes

General News

Summary

“The modern application is composed of about 90% open source components. So, the software developers at an organisation are typically writing about 10% of the code,” Fox notes. “What the challenge is, is that the attackers are engineers like the rest of us and they’re trying to figure out how to maximise their ROI.” Log4J is the prime example for open source vulnerabilities being a problem. “I think what Log4j finally brought to the forefront, where everybody sort of had this collective freak out, was that we’re all critically dependent upon these things.” Fox goes on to talk about why open source is being targeted, what organisations can do and how he sees the software supply chain evolving. To hear more about open source and much more, you can listen to Electronic Specifier’s interview with Brian Fox on Spotify or Apple Podcasts.

Classifications

industries
Entertainment
applications
E-Commerce EDI Software

AskAI Classifications

Labels
Operating Systems Consumer Software Cloud Services

Linked Companies

Apple Inc.
$1B+