#Open journalism No news is bad news

Your contributions will help us continue to deliver the stories that are important to you

Support The Journal
Dublin: 15°C Sunday 25 July 2021

Google, Microsoft and co join forces to prevent the next Heartbleed from happening

The Core Infrastructure Initiative will invest in open source projects that play an important role in web security, and is backed by companies like Google, Facebook and Microsoft.

Image: Heartbleed

AFTER THE DISCOVERY of Heartbleed earlier this month, a flaw in OpenSSL which affected two-thirds of the web, a number of major tech companies are teaming up to help prevent a similar situation from happening again.

The Core Infrastructure Initiative, which was formed by the Linux Foundation, is a new project which will fund open source projects that are critical for core computing and internet functions.

One of the problems it will address is how a large number of crucial open source software projects are under-funded and under-resourced. OpenSSL, which is used by two-thirds of the web, has only received $2,000 per year in donations despite playing a major role in web encryption.

Twelve companies have backed the initiative including Dell, Microsoft, Google, Facebook, Intel, Amazon Web Services, HP, and IBM. Each company have each pledged $100,000 a year over the next three years to the initiative, meaning it has $3.6 million to pledge to projects during this period.

Support from the initiative will include funding for fellowships for key developers to work full-time on open source projects, security audits, computing and test infrastructure, travel, face-to-face meeting coordination and other support.

Funds will be administered by The Linux Foundation and a steering group comprised of backers of the project as well as key open source developers and other industry stakeholders.

#Open journalism No news is bad news Support The Journal

Your contributions will help us continue to deliver the stories that are important to you

Support us now

The first project under consideration to receive funds from the initiative will be OpenSSL, the encryption tool at the centre of Heartbleed, and will consider other open source projects over time.

Read: ‘Heartbleed’ security bug leaves encrypted web servers at risk >

Read: The rate of cybercrime is on the rise, with some firms losing nearly €4 million because of it >

About the author:

Quinton O'Reilly

Read next: