this post was submitted on 16 Apr 2025
1124 points (98.4% liked)

Technology

71991 readers
2809 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 

Because vulnerability management has nothing to do with national security, right?

(page 2) 50 comments
sorted by: hot top controversial new old
[–] nightm4re@feddit.org 10 points 2 months ago

My European friends here: do whatever you can to make EUVD a viable alternative. It's a vulnerability database led by the European Union Agency for Cybersecurity enisa. Since their website is relatively new, you can help by providing feedback though this survey. Yes, the CVE funding has been continued for another year. But a sustainable approach to vulnerability management cannot be dependent on a single government-owned / funded entity any longer! I wish the board members all the best in transferring CVE to a new umbrella organization, but now is a great time to also consider global alternatives.

[–] fubarx@lemmy.world 10 points 2 months ago (1 children)

Be funny if someone started a gofundme.

load more comments (1 replies)
[–] Mwa@lemm.ee 9 points 2 months ago

We need a alterntive that doesn't rely on the U.S.A it can be from any country

[–] oppy1984@lemm.ee 7 points 2 months ago

So either the EU steps up and funds them until the administration tariffs the EU until they stop.

Or we rely on the big tech companies to step up and fund them and risk pissing off the administration.

Honestly the only way I see them coming back is either up root their lives and move to the EU with a funding guarantee, or the EU just sets up their own program.

[–] SoftestSapphic@lemmy.world 5 points 2 months ago* (last edited 2 months ago)

Oh, there goes the majority of the cybersec vulnerability disclosure space

This is the platform most of the world uses to keep track of publicly known vulnerabilities

[–] ccbrown@programming.dev 5 points 2 months ago

Terrifying. Unfortunately it’s difficult to explain to laypeople why the CVE system is so important. Our nation’s leaders certainly won’t get it. Hopefully the experts are able to get through to them when it’s time to renew again. And maybe we can reduce our government dependence a bit by then.

[–] Wimster@europe.pub 5 points 2 months ago

Oh my God, and then I think of all the hundreds of thousands of veterans who voted for Trump. You did a great job.

Yet another great decision by our benevolent leadership

[–] oysvendsen@lemmy.world 4 points 2 months ago

😳 Is the program entirely funded by the US government?

What can EU and other governments/businesses do about this? Or what are they doing?

[–] sinanbrendel@feddit.org 3 points 2 months ago

Why should something of this importance be entrusted to a single government anyways, shouldn't it be distributed/decentralized?

load more comments
view more: ‹ prev next ›