Editing WhiteSource

Jump to navigation Jump to search

Warning: You are not logged in. Your IP address will be publicly visible if you make any edits. If you log in or create an account, your edits will be attributed to your username, along with other benefits.

The edit can be undone. Please check the comparison below to verify that this is what you want to do, and then save the changes below to finish undoing the edit.

Latest revision Your text
Line 1: Line 1:
'''[[wikipedia:WhiteSource|Whitesource]]''' is an [[open source]] security and license compliance management platform. It was founded in 2011 by Ron Rymon, Azi Cohen, and Rami Sass.<ref name=":0">{{Cite news|url=https://appdevelopermagazine.com/5101/2017/3/30/whitesource-bolt-detects-vulnerable-open-source-components/|title=WhiteSource Bolt detects vulnerable open source components|last=Harris|first=Richard|work=App Developer Magazine|access-date=2018-02-20|language=en-US}}</ref><ref name=":7">{{Cite web|url=http://www.globes.co.il/en/article-open-source-software-co-whitesource-raises-10m-1001192519|title=Open source software co WhiteSource raises $10m - Globes English|website=Globes|language=he|access-date=2018-02-20}}</ref>
+
'''[[wikipedia:WhiteSource|Whitesource]]''' is an [[Open-source model|open source]] security and license compliance management platform. It was founded in 2011 by Ron Rymon, Azi Cohen, and Rami Sass.<ref name=":0">{{Cite news|url=https://appdevelopermagazine.com/5101/2017/3/30/whitesource-bolt-detects-vulnerable-open-source-components/|title=WhiteSource Bolt detects vulnerable open source components|last=Harris|first=Richard|work=App Developer Magazine|access-date=2018-02-20|language=en-US}}</ref><ref name=":7">{{Cite web|url=http://www.globes.co.il/en/article-open-source-software-co-whitesource-raises-10m-1001192519|title=Open source software co WhiteSource raises $10m - Globes English|website=Globes|language=he|access-date=2018-02-20}}</ref>
  
 
== History ==
 
== History ==
 
The company was founded after its three co-founders sold their previous company, Eurekify, to [[CA Technologies]].  During the due diligence process, the co-founders experienced first hand the challenge in generating an accurate open source inventory report.<ref name=":8">{{Cite web|url=https://www.geektime.co.il/whitesource-raises-million-dollars-to-manage-your-open-source-projects/|title=Whitesource מגייסת מיליון דולר; תנהל את ספריות הקוד הפתוח שלכם [גיוס] {{!}} גיקטיים|website=www.geektime.co.il|language=he-IL|access-date=2018-02-20}}</ref>
 
The company was founded after its three co-founders sold their previous company, Eurekify, to [[CA Technologies]].  During the due diligence process, the co-founders experienced first hand the challenge in generating an accurate open source inventory report.<ref name=":8">{{Cite web|url=https://www.geektime.co.il/whitesource-raises-million-dollars-to-manage-your-open-source-projects/|title=Whitesource מגייסת מיליון דולר; תנהל את ספריות הקוד הפתוח שלכם [גיוס] {{!}} גיקטיים|website=www.geektime.co.il|language=he-IL|access-date=2018-02-20}}</ref>
 
Versions:
 
* 20.1.2
 
* 20.1.1
 
* 19.11.2 Easier Onboarding for [[JFrog Artifactory]] Docker Integration
 
* 19.9.1
 
** [[GitLab]] Core beta version, enabling GitLab users to access WhiteSource security alerts within GitLab’s native environment
 
* 18.12.1
 
  
 
== Overview ==
 
== Overview ==
 
The company launched its open source license management platform. The software discovers open source components in the customers’ apps.<ref name=":3">{{Cite news|url=https://sdtimes.com/whitesource/whitesource-offers-open-source-license-management-as-a-service/|title=WhiteSource offers open-source license management as a service|date=2012-05-14|work=SD Times|access-date=2018-02-20|language=en-US}}</ref><ref>{{Cite news|url=https://www.networkworld.com/article/2164333/linux/security-of-open-source-software-again-being-scrutinized.html|title=Security of open-source software again being scrutinized|last=Messmer|first=Ellen|work=Network World|access-date=2018-02-20|language=en}}</ref> It then alerts them when a vulnerable code is added to the software projects that are being used or when threats pop up that affect the existing software.<ref name=":6">{{Cite news|url=https://www.networkworld.com/article/3054045/security/open-source-code-is-common-potentially-dangerous-in-enterprise-apps.html|title=Open source code is common, potentially dangerous, in enterprise apps|last=Greene|first=Tim|work=Network World|access-date=2018-02-20|language=en}}</ref><ref>{{Cite news|url=https://tech.co/open-source-software-advantage-2015-12|title=5 Advantages of Using Open Source Software|date=2015-12-15|work=TechCo|access-date=2018-02-20|language=en-US}}</ref>
 
The company launched its open source license management platform. The software discovers open source components in the customers’ apps.<ref name=":3">{{Cite news|url=https://sdtimes.com/whitesource/whitesource-offers-open-source-license-management-as-a-service/|title=WhiteSource offers open-source license management as a service|date=2012-05-14|work=SD Times|access-date=2018-02-20|language=en-US}}</ref><ref>{{Cite news|url=https://www.networkworld.com/article/2164333/linux/security-of-open-source-software-again-being-scrutinized.html|title=Security of open-source software again being scrutinized|last=Messmer|first=Ellen|work=Network World|access-date=2018-02-20|language=en}}</ref> It then alerts them when a vulnerable code is added to the software projects that are being used or when threats pop up that affect the existing software.<ref name=":6">{{Cite news|url=https://www.networkworld.com/article/3054045/security/open-source-code-is-common-potentially-dangerous-in-enterprise-apps.html|title=Open source code is common, potentially dangerous, in enterprise apps|last=Greene|first=Tim|work=Network World|access-date=2018-02-20|language=en}}</ref><ref>{{Cite news|url=https://tech.co/open-source-software-advantage-2015-12|title=5 Advantages of Using Open Source Software|date=2015-12-15|work=TechCo|access-date=2018-02-20|language=en-US}}</ref>
  
WhiteSource provides an open source security and [[license compliance management]] platform for organizations to manage their open source assets:  
+
WhiteSource provides an open source security and license compliance management platform for organizations to manage their open source assets:  
  
 
==== Detection ====
 
==== Detection ====
Line 21: Line 13:
  
 
==== Selection ====
 
==== Selection ====
While you search for open source components, our browser plugin reveals any reported bugs, security risks, undesirable licenses (as defined by the company policy you set up) newer versions and more for each component.
+
While you search for open source components, our browser plugin reveals any reported bugs, security risks, undesirable licenses (as defined by the company policy you set up) newer versions and more for each component, so you can make better decisions about which component to add to your build.
WhiteSource has the ability to prioritize vulnerabilities by performing [[static scans]] to understand if the vulnerable part of a component is being directly called by the application
 
  
 
==== Alerting ====
 
==== Alerting ====
Line 34: Line 25:
  
 
== Product ==
 
== Product ==
[[WhiteSource Bolt]] was launched in 2016 <ref name=":1">{{Cite news|url=https://sdtimes.com/components/r-consortium-announced-ibm-platinum-member-smartphone-sales-slowing-whitesources-new-developer-tool-sd-times-news-digest-june-7-2016/|title=R Consortium announced IBM is a Platinum member, smartphone sales slowing down, and WhiteSource’s new developer tool|date=2016-06-07|work=SD Times|access-date=2018-02-20|language=en-US}}</ref>.
+
WhiteSource Bolt was launched in 2016.<ref name=":1">{{Cite news|url=https://sdtimes.com/components/r-consortium-announced-ibm-platinum-member-smartphone-sales-slowing-whitesources-new-developer-tool-sd-times-news-digest-june-7-2016/|title=R Consortium announced IBM is a Platinum member, smartphone sales slowing down, and WhiteSource’s new developer tool|date=2016-06-07|work=SD Times|access-date=2018-02-20|language=en-US}}</ref>
and since December 2018 is available free for [[GitHub]] and [[Azure DevOps]] users capable of providing coverage for both binaries and source libraries.
+
 
 +
 
  
 
==External links==
 
==External links==
* [https://resources.whitesourcesoftware.com/ WhiteSource Blog]
+
* [https://resources.whitesourcesoftware.com/ WhiteSource Blog]
  
== Plugins ==
 
* [[TeamCity]] Plugin: https://whitesource.atlassian.net/wiki/spaces/WD/pages/33914926/TeamCity+Plugin
 
  
== Related terms ==
 
* [[WhiteSource Core]]
 
* [[WhiteSource for Containers]]<ref>https://whitesource.atlassian.net/wiki/spaces/WD/pages/710640440/WhiteSource+for+Containers</ref>
 
* [[WhiteSource for developers]] <ref>https://whitesource.atlassian.net/wiki/spaces/WD/pages/772636719/WhiteSource+for+Developers</ref>, integrated with GitLab<ref>https://resources.whitesourcesoftware.com/news-whitesource/whitesource-enhances-gitlab-integration-with-support-for-gitlab-ultimate</ref>
 
* [[WhiteSource Prioritize]]
 
* [[WhiteSource Remediate]]
 
* [[WhiteSource DevOps Azure Extension]]
 
  
 
== See also ==
 
== See also ==
* {{SCA}}
+
* [[CSA]]
* [[AppSec]]
+
 
* {{WhiteSource}}
 
* {{security}}
 
  
 
{{CC license}}. Source: wikipedia
 
{{CC license}}. Source: wikipedia

Please note that all contributions to wikieduonline may be edited, altered, or removed by other contributors. If you do not want your writing to be edited mercilessly, then do not submit it here.
You are also promising us that you wrote this yourself, or copied it from a public domain or similar free resource (see Wikieduonline:Copyrights for details). Do not submit copyrighted work without permission!

Cancel Editing help (opens in new window)

Advertising: