# Open Source Security Foundation > Linux Foundation Projects ## Posts - [What’s in the SOSS? Podcast #65 – S3E17 Signing the Future: Securing AI and ML Artifacts with Mihai Maruseac](https://openssf.org/podcast/2026/07/14/whats-in-the-soss-podcast-65-s3e17-signing-the-future-securing-ai-and-ml-artifacts-with-mihai-maruseac/): In this episode of What’s in the SOSS?, host Yesenia Yser sits down with Mihai Maruseac (OpenAI) to discuss the OpenSSF Model Signing (OMS) specification, securing the AI/ML supply chain, and establishing a cryptographic chain of custody for models and datasets. - [OpenSSF Newsletter – January 2026](https://openssf.org/newsletter/2026/01/29/9519/): Welcome to the January 2026 edition of the OpenSSF Newsletter. This issue highlights new research, community priorities, and upcoming events - [What’s in the SOSS? Podcast #64 – S3E16 The Heartbeat of the Kernel: Why Upstream is the Ultimate Security Strategy with Greg Kroah-Hartman](https://openssf.org/podcast/2026/06/30/whats-in-the-soss-podcast-64-s3e16-the-heartbeat-of-the-kernel-why-upstream-is-the-ultimate-security-strategy-with-greg-kroah-hartman/): What does it feel like to wake up and realize your weekend passion project is now the critical infrastructure powering - [The CRA Readiness Reality: What Changed (and What Didn’t) Between 2025 and 2026?](https://openssf.org/blog/2026/06/25/the-cra-readiness-reality-what-changed-and-what-didnt-between-2025-and-2026/): In 2025, Linux Foundation Research, Linux Foundation Europe, and Open Source Security Foundation (OpenSSF) published Unaware and Uncertain: The Stark Realities of Cyber Resilience Act Readiness in Open Source. It took a survey-based look at how prepared the open source ecosystem was for the European Union's Cyber Resilience Act (EU CRA). The headline finding was blunt: 62% of respondents had little to no familiarity with a regulation that would reshape how software gets built, shipped, and maintained across global supply chains. The hope was that with a year to go before the CRA enters into force, community education initiatives and a growing body of guidance would move the readiness needle. They didn't. - [OpenSSF Newsletter – June 2026](https://openssf.org/newsletter/2026/06/24/openssf-newsletter-june-2026/): June highlighted the high stakes for open source security. The European Open Source Security Forum focused on turning CRA commitments into action, while the Mini Shai-Hulud and Miasma threats underscored the need for strong provenance. Despite these challenges, the community progressed with new machine-readable guidance, a SLSA supply chain post-mortem, and a critical CRA Awareness report. Read on for the full update! ## Pages - [Home](https://openssf.org/): 📣 Register for SOSS Fusion 2024! The Conference for Secure Open Source Software. Navigating AI-generated contributions? Get our practical security - [Census III of Free and Open Source Software](https://openssf.org/resources/census-iii-of-free-and-open-source-software/): Census III of Free and Open Source Software What are the most commonly used free and open source software (FOSS) - [Visualizing Secure MLOps (MLSecOps): A Practical Guide for Building Robust AI/ML Pipeline Security](https://openssf.org/resources/visualizing-secure-mlops-mlsecops-a-practical-guide-for-building-robust-ai-ml-pipeline-security/): Secure AI/ML pipelines from the start This whitepaper introduces a practical, visual framework for integrating security across the machine learning - [ROI for Open Source Software Contribution](https://openssf.org/resources/roi-for-open-source-software-contribution/): Insight from the 2025 Open Source ROI Survey and Economic Model What is the benefit of contributing to open source? - [Download the 2023 OpenSSF Annual Report](https://openssf.org/download-the-2023-openssf-annual-report/): Download the 2023 OpenSSF Annual Report Discover the highlights of a dynamic year in the OpenSSF community with our 2023 ## Projects - [OSS-CRS](https://openssf.org/projects/oss-crs/) - [Security Insights](https://openssf.org/projects/security-insights/) - [Best Practices Badge](https://openssf.org/projects/best-practices-badge/) - [Gemara](https://openssf.org/projects/gemara/) - [Minder](https://openssf.org/projects/minder/) ## Working Groups - [Security Tooling](https://openssf.org/groups/security-tooling/) - [Belonging, Empowerment, Allyship, and Representation](https://openssf.org/groups/bear/) - [AI/ML Security](https://openssf.org/groups/ai-ml-security/) - [Open Resources for Baselines, Interoperability and Tooling](https://openssf.org/groups/orbit/) - [Supply Chain Integrity](https://openssf.org/groups/supply-chain-integrity/) ## Venues - [Austria Center Vienna](https://openssf.org/venue/austria-center-vienna/) ## Organizers - [OpenSSF](https://openssf.org/organizer/openssf-2/) - [OpenSSF](https://openssf.org/organizer/openssf/) ## Events - [CFP – DevOpsDays Almaty (Kazakhstan)](https://openssf.org/event/cfp-nordic-software-security-summit/): 🗓 CFP closes: October 1, 2026 📍 Event date: October 16, 2026 📍 Event location: Almaty, Kazakhstan 👉 Submit your - [CFP – BSides NYC](https://openssf.org/event/cfp-bsides-nyc/): 🗓 CFP closes: July 19 📍 Event date: October 17, 2026 📍 Event location: New York City, NY 👉 Submit - [CFP – BSides TC (Twin Cities)](https://openssf.org/event/cfp-bsides-tc-twin-cities/): 🗓 CFP closes: July 19 📍 Event date: October 23, 2026 📍 Event location: Minneapolis, MN 👉 Submit your proposal - [CFP – KCD Porto x DevOps Days Portugal 2026](https://openssf.org/event/cfp-mcp-dev-summit-toronto-2/): 🗓 CFP closes: July 31 📍 Event date: November 19-20, 2026 📍 Event location: Porto, Portugal 👉 Submit a proposal - [CFP – BSides Munich](https://openssf.org/event/cfp-bsides-munich/): 🗓 CFP closes: July 24 📍 Event date: November 7-9, 2026 📍 Event location: Munich, Germany 👉 Submit your proposal ## Categories - [Blog](https://openssf.org/category/blog/) - [Guest Blog](https://openssf.org/category/guest-blog/) - [Podcast](https://openssf.org/category/podcast/) - [Press Release](https://openssf.org/category/press-release/) - [Newsletter](https://openssf.org/category/newsletter/) ## Tags - [OpenSSF](https://openssf.org/tag/openssf/) - [Open Source Security](https://openssf.org/tag/open-source-security/) - [Community](https://openssf.org/tag/community/) - [Open Source](https://openssf.org/tag/open-source/) - [Linux Foundation](https://openssf.org/tag/linux-foundation/) ## Projects Categories - [Projects](https://openssf.org/projects_category/projects/) - [Software Supply Chain](https://openssf.org/projects_category/supply-chain/) - [Featured](https://openssf.org/projects_category/featured/) - [Compliance](https://openssf.org/projects_category/compliance/) - [SBOM Tools](https://openssf.org/projects_category/security-tools/) ## Projects Stages - [Sandbox](https://openssf.org/projects_stage/sandbox/) - [Incubating](https://openssf.org/projects_stage/incubating/) - [TDB](https://openssf.org/projects_stage/tdb/) - [Graduated](https://openssf.org/projects_stage/graduated/) ## Working Groups Categories - [Featured](https://openssf.org/working_groups_category/featured/) ## Event Categories - [Upcoming CFPs](https://openssf.org/our-events/category/upcoming-cfps/) - [OpenSSF Events](https://openssf.org/our-events/category/openssf-events/) - [India Initiative](https://openssf.org/our-events/category/india-initiative/) - [Community Events](https://openssf.org/our-events/category/community-events/) ## Optional - [Sitemap index](https://openssf.org/wp-sitemap.xml)