<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.palamida.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Palamida - Software Risk Management</title>
 <link>http://www.palamida.com/taxonomy/term/4/0</link>
 <description>Software Risk Management</description>
 <language>en</language>
<item>
 <title>Thoughts on FOSSology</title>
 <link>http://www.palamida.com/node/534</link>
 <description>&lt;p&gt;By now you&#039;ve probably seen HP&#039;s &lt;a href=&quot;http://www.hp.com/hpinfo/newsroom/press/2008/080124a.html?mtxs=rss-corp-combined&quot; target=&quot;_blank&quot;&gt; FOSSology &lt;/a&gt; announcement. It&#039;s an initiative that they say will, &quot;facilitate the study of Free and Open Source Software by providing free data analysis tools&quot;. It&#039;s a welcome addition to the open source world, and is evidence of the growth of a robust ecosystem of tools and information. Open source is how software is done today. &lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.palamida.com/node/534&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.palamida.com/node/534#comment</comments>
 <category domain="http://www.palamida.com/taxonomy/term/4">Software Risk Management</category>
 <pubDate>Fri, 25 Jan 2008 11:54:01 -0600</pubDate>
 <dc:creator>admin</dc:creator>
 <guid isPermaLink="false">534 at http://www.palamida.com</guid>
</item>
<item>
 <title>The Top 5 Most Overlooked Open Source Vulnerabilities for 2007</title>
 <link>http://www.palamida.com/node/513</link>
 <description>&lt;p&gt;For year-end 2007, we have compiled the Top 5 Most Overlooked Open Source Vulnerabilities encountered during 2007. We came up with this list after reviewing over 300 million lines of code and spending literally thousands of hours of analysis across a wide range of industries - including technology, financial services and government, among others.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.palamida.com/node/513&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.palamida.com/node/513#comment</comments>
 <category domain="http://www.palamida.com/taxonomy/term/4">Software Risk Management</category>
 <pubDate>Fri, 07 Dec 2007 19:32:20 -0600</pubDate>
 <dc:creator>admin</dc:creator>
 <guid isPermaLink="false">513 at http://www.palamida.com</guid>
</item>
<item>
 <title>Why Your Customers Care About Your Use of Open Source</title>
 <link>http://www.palamida.com/node/397</link>
 <description>&lt;p&gt;Beginning in 2006, some customers of my previous company started inserting contract provisions requiring us to identify all open source software in use within the networking service we provided. As the VP of Engineering at the time, I told them that I stood behind the total service offering, regardless of which parts were open source, which were commercially licensed, and which were built by us, so they needn&#039;t be concerned about this. In each case they agreed and removed the provision. It is now clear to me that they should not have done so. Here&#039;s why.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.palamida.com/node/397&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.palamida.com/node/397#comment</comments>
 <category domain="http://www.palamida.com/taxonomy/term/4">Software Risk Management</category>
 <pubDate>Tue, 12 Jun 2007 13:35:59 -0500</pubDate>
 <dc:creator>admin</dc:creator>
 <guid isPermaLink="false">397 at http://www.palamida.com</guid>
</item>
<item>
 <title>The False Positives of Vulnerability</title>
 <link>http://www.palamida.com/node/354</link>
 <description>&lt;p&gt;Jeff Jones writes an ongoing security blog for &lt;a href=&quot;http://www.csoonline.com/&quot; target=&quot;_blank&quot;&gt;CSO Online&lt;/a&gt;. A recent &lt;a href=&quot;http://blogs.csoonline.com/scrubbing_the_source_data_part_1_nvd&quot; target=&quot;_blank&quot;&gt;post &lt;/a&gt; about scrubbing and verifying data from repositories such as &lt;a href=&quot;http://nvd.nist.gov/nvd.cfm&quot; target=&quot;_blank&quot;&gt; National Vulnerability Database&lt;/a&gt; caught our attention.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.palamida.com/node/354&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.palamida.com/node/354#comment</comments>
 <category domain="http://www.palamida.com/taxonomy/term/4">Software Risk Management</category>
 <pubDate>Thu, 03 May 2007 16:10:43 -0500</pubDate>
 <dc:creator>admin</dc:creator>
 <guid isPermaLink="false">354 at http://www.palamida.com</guid>
</item>
<item>
 <title>Webcast - Informal Survey</title>
 <link>http://www.palamida.com/node/200</link>
 <description>&lt;p&gt;Last week, our CTO Ray Waldin participated in a webinar with Rob Jenkins from &lt;a href=&quot;http://www.collab.net/&quot; target=&quot;_blank&quot;&gt;CollabNet&lt;/a&gt; and Eddie Correia from &lt;a href=&quot;http://www.sdtimes.com/index.html&quot; target=&quot;_blank&quot;&gt;SD Times&lt;/a&gt;. The topic was &quot;Two Steps to Centralized, Secure, and Auditable Source Code.&quot;&lt;/p&gt;
&lt;p&gt;As part of the webinar, we conducted an online survey. Here are some of the more interesting results. (We&#039;re not for a minute suggesting these are in any way statistically valid):&lt;/p&gt;
&lt;p&gt;&lt;b&gt;How do you manage the use of open source in your code base today?&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.palamida.com/node/200&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.palamida.com/node/200#comment</comments>
 <category domain="http://www.palamida.com/taxonomy/term/4">Software Risk Management</category>
 <pubDate>Fri, 03 Mar 2006 02:00:00 -0600</pubDate>
 <dc:creator>admin</dc:creator>
 <guid isPermaLink="false">200 at http://www.palamida.com</guid>
</item>
<item>
 <title>IP Ingredients</title>
 <link>http://www.palamida.com/node/207</link>
 <description>&lt;p&gt;Twice today... Maybe my new year&#039;s resolution is working...&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.palamida.com/node/207&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.palamida.com/node/207#comment</comments>
 <category domain="http://www.palamida.com/taxonomy/term/4">Software Risk Management</category>
 <pubDate>Mon, 02 Jan 2006 18:50:00 -0600</pubDate>
 <dc:creator>admin</dc:creator>
 <guid isPermaLink="false">207 at http://www.palamida.com</guid>
</item>
</channel>
</rss>

