CISA Guidance on Open-Source Software Security
The Cybersecurity and Infrastructure Security Agency published a guidebook for federal agencies on managing security risks with open-source software, covering topics like patching and open-source AI models.