THE LINUX FOUNDATION PROJECTS

Alpha-Omega (AO) is an associated project of the OpenSSF, established in February 2022.  AO is funded by Microsoft, Google, Amazon and Citi, with a mission to protect society by catalyzing sustainable security improvements to the most critical open source software projects and ecosystems. The project aims to build a world where critical open source projects are secure and where security vulnerabilities are found and fixed quickly.

Learn More

MEMBER ORGANIZATIONS

Premier Members

General Members

Inquire to Join

Organizations join Alpha-Omega because they want to take an active role in improving the security of open source software models.

ABOUT ALPHA-OMEGA

Partnering with open source software project maintainers to systematically find new, as-yet-undiscovered vulnerabilities in open source code – and get them fixed – to improve global software supply chain security.

Alpha” will work with the maintainers of the most critical open source projects to help them identify and fix security vulnerabilities, and improve their security posture.

Omega” will identify at least 10,000 widely deployed OSS projects where it can apply automated security analysis, scoring, and remediation guidance to their open source maintainer communities.

LATEST FROM ALPHA-OMEGA

Strengthening FreeBSD’s Software Supply Chain: Year Two of Alpha-Omega Support

| Blog | No Comments
Alpha-Omega’s second year of support for the FreeBSD Foundation focuses on strengthening the security and maintenance of third party dependencies, advancing SBOM work for the FreeBSD base system, and improving…

Documenting Package Manager Data: Insights from ecosyste.ms

| Blog | No Comments
ecosyste.ms released new open datasets documenting how 70+ package managers structure metadata, manifests, lockfiles, and registry APIs. This work helps strengthen software supply-chain security and supports tools built across ecosystems,…

Slippery Zips and Sticky Tar-Pits: Security and Archives | White Paper by: Seth Larson – Python Software Foundation

| Blog | No Comments
This new white paper from Seth Larson of the Python Software Foundation explores how legacy archive formats like ZIP and tar introduce security risks, and how the Python ecosystem is…

LEADERSHIP TEAM

STAFF

AN ASSOCIATED PROJECT OF THE OPEN SOURCE SECURITY FOUNDATION