Where to find vulnerability information

Описание к видео Where to find vulnerability information

Information on security vulnerabilities can be found in many different places. In this part, we discuss several different databases that hold information on vulnerabilities. Some databases are generic and hold vulnerability information on both proprietary and open-source software, while others target a specific language or distribution platform.

In this video, we give examples of all variants and discuss the connection between some of these databases and locations. Understanding this connection, where you can expect to find information, and what information you can expect to find will help you understand the complexity of identifying vulnerabilities. Examples of vulnerability sources that we discuss include NVD, GitHub Advisory Database, FriendsOfPHP, Global Security Database, and the Open Source Vulnerabilities database.
[insert a short description of the video + the link to relevant resource(s) such as blog, Select, docs, Portal]

Dive deeper into the topic on our blog:
What is a security vulnerability? - https://debricked.com/blog/what-is-se...

Debricked | Your Partner in Open Source
https://debricked.com/

Chapters:
0:00 Intro
0:25 NVD - The National Vulnerability Database
2:13 The GitHub Security Advisory Database
3:15 Advisories for specific languages/packages
5:00 Other sources

Debricked is the small voyager with huge ambitions to not only become the best software composition analysis tool in the universe but to bring SCA 2.0 to the game.

Actionability - Debricked SCA doesn't only show you what security vulnerabilities you have, the tool also helps you fix them with either a simple click or a remediation suggestion.
Data quality - The Debricked tool is based on state-of-the-art machine learning algorithms, making the data quality absolutely top of the game. This means fewer false positives and minimal false alerts.
Open source intelligence - Debricked doesn't only help you analyze and fix vulnerabilities and ensure license compliance, the tool also helps you better understand the health of the open source projects your developers use.

Further resources:
The Debricked Blog ‣ https://debricked.com/blog/
Open Source Select ‣ https://debricked.com/select/
Vulnerability Database ‣ https://debricked.com/vulnerability-d...

Connect with us:
LinkedIn ‣   / debricked  
Twitter ‣ @debrickedab
Instagram ‣ @debricked

#Debricked #OpenSource #OpenSourceSecurity

Комментарии

Информация по комментариям в разработке