A year of open source vulnerability trends: CVEs, advisories, and malware (opens in new tab)
The passage identifies a security professional involved in several major vulnerability-management initiatives. They curate the GitHub Advisory Database, participate in GitHub’s Security Lab, issue CVE IDs, and publish CVE records.
Responsibilities and Affiliations
- Works as a security analyst.
- Curates entries in the GitHub Advisory Database.
- Is a member of the Security Lab.
- Helps issue CVE identifiers for vulnerabilities.
- Publishes official CVE records.
Overall, the individual contributes to documenting, coordinating, and communicating software security vulnerabilities.