Google kwanan nan ya ba da babbar manhajar buɗaɗɗen tushe tare da ƙaddamar da sadaukarwar tsaro da ƙungiyoyin tallafi.
The "Open Source Maintenance Crew" zai zama sabon tawagar masu tasowa za su yi aiki a kan al'amurran tsaro da suka shafi bude tushen ayyukan, kamar daidaita updates.
Sanarwar ta zo ne a taron Tsaro na Budadden Tushen Tsaro na Fadar White House, inda Google ya shiga Gidauniyar Tsaro ta Open Source (OpenSSF) da Linux Foundation don tattauna batutuwan da suka shafi tsaro na bude ido.
Me yasa motsi?
Komawa cikin Disamba 2021, mai ba da shawara kan harkokin tsaro na Fadar White House Jake Sullivan ya aika da wasiƙa ga shugabannin kamfanonin fasahar Amurka bayan raunin Log4Shell a cikin mashahurin tsarin shigar java na Apache Log4j an gano shi.
An yi amfani da rashin lafiyar don shigar da malware, don cryptomining, don ƙara na'urorin zuwa Mirai da Muhstik botnets, don sauke tashoshi na Cobalt Strike, don bincika bayanan bayyanawa, ko don motsi na gefe a cikin hanyar sadarwar da abin ya shafa bisa ga shafin yanar gizon Microsoft.
"Wannan matsala ta tabbatar da buɗaɗɗen software ba wai kawai game da kuɗi ba ne, don yawancin ayyuka masu mahimmanci na budewa ya shafi adadin mutanen da ke da hannu da kuma tsawon lokacin da za su iya kashewa a kan aikin," in ji Babban Injiniya na Tsaro na Open Source a. Google, Abhishek Arya.
"Ko da tare da ƙarin kudade, muna buƙatar ikon jagorantar wannan kuɗin zuwa ga maƙasudai masu kyau. Wannan matsala ce ta mutane da kuma matsalar kudi."
Ya kara da cewa: "Don magance wannan kalubale mai ma'ana, Google ya samar da 'Open Source Maintenance Crew' tare da ra'ayin cewa wata hukuma kamar OpenSSF za ta iya gudanar da kungiyar kuma ta zama mai daidaitawa don ayyuka masu mahimmanci."
Yunkurin ya zo ne yayin da tallafi na tushen buɗe ido ke haɓaka ƙwazo da tallafi a cikin al'ummar IT, tare da amfani da lamuran kamar haɗin gwiwar kan layi suna haɓaka shahararsa.
A kwanan nan Rahoton Budaddiyar Jiha na 2022 , wanda OpenLogic ya gudanar, ya yi nazari kan ƙwararrun 2,660 da ƙungiyoyinsu waɗanda ke amfani da kayan aikin buɗewa, gano sama da kashi ɗaya cikin huɗu (27%) sun ce ba su da wata damuwa ko kaɗan game da irin waɗannan kayan aikin, yayin da 13.9% kawai ke damuwa game da rashin tsaro kuma ba a gwada su ba.