Educause Security Discussion mailing list archives

Potential Security Risks in OpenSource LMS environments


From: Cathy Hubbs <hubbs () AMERICAN EDU>
Date: Tue, 14 Jul 2009 17:26:01 -0400

In thinking about the move toward Open Source Learning Management Systems
(i.e., Moodle, Sakai, ATutor, etc., etc.) from Blackboard...

Has anyone encountered or addressed potential security risks/concerns that
may be more prevalent in the Open Source LMS environment vs the COT LMS?

1. Timeliness of Patch Deployment
2. More difficulty protecting data stores  (i.e., distributed, the
potential for DBs on individual Faculty workstation)

others?

Thanks in advance.


Cathy Hubbs, CISSP, CISA, CGEIT
Chief Information Security Officer
Office of Information Technology
American University

Current thread: