A new investment in open source security powered by AI

Billions of people rely on an Internet built on open source software – software that anyone can use – but that trust only works if the underlying software is secure. That's why for more than 20 years, Google has championed open source by supporting the developers who protect it — promoting initiatives like the Google Summer of Code and bug hunting programs that find and fix dozens of vulnerabilities.
Today, as a founding member of the Linux Foundation's Alpha-Omega Project, we are pledging $12.5 million in partnership with Amazon, Anthropic, Microsoft/GitHub and OpenAI to continue investing in the stability and security of the open source community. The funding, led by Alpha-Omega and OpenSSF, will help administrators stay ahead of the new generation of AI-driven threats, move security beyond vulnerability discovery to issue fixes, and put advanced security tools directly in the hands of administrators, to turn the myriad of AI-generated results into immediate action.
In addition to its industry-wide commitment, Google is dedicated to helping the open source community overcome emerging threats and provide a scale in defenders' favor by providing advanced AI tools for widespread use.
Inside, Big Sleep and CodeMender, both AI-powered tools from Google DeepMind, have already shown remarkable success in helping us secure our systems, showing that AI can automatically find and fix deep, exploitable vulnerabilities in complex applications like the Chrome browser. We are also expanding research programs such as Sec-Gemini for open source projects (interest form). This breakthrough demonstrates the transformative power of AI to secure the broader open source ecosystem.
Open source is the backbone of the modern web, and we're proud to support the maintainers who protect it so it can move faster, stay secure and continue to build the future.



