Google’s OSS-Fuzz Tool Helps Secure Open Source Projects (Linux.com)

Post Syndicated from ris original https://lwn.net/Articles/728195/rss

Linux.com takes
a look
at Google’s OSS-Fuzz threat detection tool. “Google also
announced that it is expanding its existing Patch
Rewards
program to include rewards for the integration of fuzz
targets
into OSS-Fuzz. To qualify for these rewards, a project needs to
have a large user base and/or be critical to global IT
infrastructure. Eligible projects will receive $1,000 for initial
integration, and up to $20,000 for ideal integration (the final amount is
at Google’s discretion). Project leaders have the option of donating these
rewards to charity instead, and Google will double the amount.

LWN covered OSS-Fuzz last January.