Who ya gonna call? Ready for the third-party, volunteer open source software security police? Open source software is often criticized for not including the robust security features, and response to security issues, found in commercial software counterparts. In addition, code from smaller open source projects is often wrapped into code for bigger projects, which can introduce security issues where there were none before. Now, with backing from Google, several well-known security professionals have launched
oCERT--a public effort to provide security handling support and response for open source projects.