Jun 02, 2021 06:16 PM (GMT+8) · EqualOcean
According to the "2021 China software supply chain security analysis report" released by Qianxin group on the 2nd, 100% of domestic enterprise software projects use open source software; Over 80% of software projects have known high-risk open source software vulnerabilities; On average, there are 66 known open source software vulnerabilities per software project. According to the report, the foundation of software supply chain security in China is relatively weak, and it is urgent to improve the level of software supply chain security management. Qianxin proposes to formulate policy requirements, standards and implementation guidelines related to software supply chain security at the national and industry regulatory levels, and establish a national / industry level software supply chain security risk analysis platform.