LINUX FOUNDATION RESEARCH

We’re investigating the impact of open source collaboration to solve the world’s most pressing challenges.

LF Research about page cover tiles

About LF Research

LF Research publishes actionable and decision-useful insights into open source software, hardware, standards, and data based on empirical research methodologies. Through leveraging community networks, project databases, surveys, and qualitative findings, and through its commitment to best practices in primary research, Linux Foundation Research is the definitive home for data-driven insights into open source for the benefit of governments, enterprises, and society at large.

Pathways to Cybersecurity Best Practices in Open Source

This case study report from the Linux Foundation investigates the impacts of the Cyber Resilience Act on open source software.

 

Web Assets_Pathways to Cybersecurity Best Practices in Open Source_2025 Report_Thumbnail_Cover

Participate in Our Research

Join the LF Research Forum and participate in our surveys and interviews to give back to your community and earn events & training discounts!

Interested in conducting research?

Review our prospectus for more information, and email us at research@linuxfoundation.org

 

lfresearch_benefits

Pathways to Cybersecurity Best Practices in Open Source

Download Report
This case study report from the Linux Foundation investigates the impacts of the Cyber Resilience Act on open source software, including new cybersecurity obligations and the role of manufacturers and stewards. The analysis highlights the security practices of Linux Foundation projects and notes challenges like long-term support, regulatory uncertainty, and standardization gaps. The report recommends investing in security tools, fostering collaboration, and addressing emerging threats such as AI-driven risks.
 
By featuring the cybersecurity practices of three LF projects—Yocto Project, Zephyr, and Civil Infrastructure Platform—this report provides tried-and-tested pathways for the rest of the open source community to consider when preparing for this new regulatory landscape. Read the full report to glean insights from these forward-thinking projects!
 
Authors
  • Mirko Boehm, PhD, The Linux Foundation
  • Hilary Carter, The Linux Foundation
  • Cailean Osborne, PhD, The Linux Foundation
  • Foreword by Miriam Seyffarth, Open Source Business Alliance
Additional Info
  • DOI: 10.70828/UPDC4713

Our Team

Filter by: