Security News

Cybersecurity news aggregator

INFO News SC Media

Deloitte joins IBM and Red Hat's initiative to secure open-source software

  • What: Deloitte partners with IBM and Red Hat to improve open-source software security.
  • Impact: Aims to enhance the security of open-source components used in enterprise software.
Read Full Article →

Vulnerability Management Deloitte joins IBM and Red Hat’s initiative to secure open-source software June 29, 2026 Share By SC Staff As reported by Silicon Angle, Deloitte Touche Tohmatsu Ltd. is partnering with IBM Corp. and its Red Hat unit on Project Lightwell, an initiative launched to address vulnerabilities in open-source software. This collaboration aims to enhance the security and trustworthiness of the open-source software supply chain. The partnership focuses on strengthening the security of open-source components used in enterprise software. Deloitte will assist joint customers in mapping and continuously updating their inventory of open-source components, ensuring they are aware of any vulnerable modules within their applications. IBM and Red Hat will provide automated patch validation to confirm that security updates function correctly, while Deloitte will manage the installation and validation of these patches. The initiative, initially backed by a $5 billion commitment and 20,000 engineers from IBM and Red Hat, will prioritize organizations in highly regulated sectors, helping them comply with cybersecurity laws. The collaboration also includes assisting companies with breach reporting to regulators and notifying open-source project maintainers of vulnerabilities before public disclosure, allowing for timely patching. Source: Silicon Angle SC Staff Related Patch/Configuration Management New coalition aims to streamline open source bug fixes SC Staff June 29, 2026 The Athena coalition, led by Chainguard, will leverage artificial intelligence to proactively address vulnerabilities in open source code. Vulnerability Management 2 Linux kernel flaw PoCs published, enabling local privilege escalation Laura French June 26, 2026 One of the flaws, DirtyClone, is a variant of the DirtyFrag vulnerability class. Vulnerability Management Curl fixes 18 vulnerabilities, including a 25-year-old bug SC Staff June 26, 2026 The update includes fixes for issues discovered through AI-assisted analysis, with AISLE identifying six CVEs, including the oldest known bug, CVE-2026-8932, which dates back to curl 7.7 in March 2001. Related Events Cybercast Why Mythos is the cybersecurity crisis we need Wed Jul 22 Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms Bug Buffer Overflow Disassembly You can skip this ad in 5 seconds

Share this article