SourceForge scans All Projects with Bitdefender and ESET

Ink

Administrator
Thread author
Verified
Staff Member
Well-known
Jan 8, 2011
22,353
Dated May 2016

We’ve partnered with Bitdefender to scan the open source software projects on SourceForge so that users feel more secure in downloading clean, safe software from SourceForge that will not put their machines in jeopardy, nor bundle any adware, malware, or unwanted applications. We will also be running additional scans with ESET.

The top 1000 most popular SourceForge projects, representing 84% of all SourceForge traffic, have already been scanned. The vast majority of them contained no issues, but projects that were flagged for malware were notified, and most of them have rectified the issues already by removing the flagged files. For the few projects that have not addressed the issues, the malware warning badge (screenshot below) will display in red next to the download button.

Going forward, all new projects uploaded to SourceForge from brand new user accounts will not be accepted if they are flagged by either Bitdefender or ESET scans upon uploading. Projects from users who have been registered with SourceForge for a certain amount of time will be able to upload projects, but if they are flagged they will display the warning.

As with all virus scanners, the method is not 100% perfect, but we are committed to doing everything in our power to ensure that the open source software hosted and distributed on SourceForge is clean, safe, trustworthy, and free of any adware, viruses, malware, or unwanted applications.
 

Myriad

Level 7
Verified
Well-known
May 22, 2016
349
All credit to SourceForge for not jumping on the crapware/bundleware bandwagon.

Also to MajorGeeks for clearly indicating where downloads may include PUPs ( and how to avoid them ) ,
and for providing direct links to the developers sites where possible.
 

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
Well I can see that bypass rate is minimal, since ESET and Bitdefender are ones included in having fast response even the threats are zero-day.
 
  • Like
Reactions: AtlBo

AtlBo

Level 28
Verified
Top Poster
Content Creator
Well-known
Dec 29, 2014
1,711
All credit to SourceForge for not jumping on the crapware/bundleware bandwagon.

Also to MajorGeeks for clearly indicating where downloads may include PUPs ( and how to avoid them ) ,
and for providing direct links to the developers sites where possible.

Couldn't agree more. Great move by SourceForge. Also, great work by Major Geeks protecting users with clean downloads and with information on the installers.
 
  • Like
Reactions: Ana_Filiz

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top