#foss-projects

[ follow ]
#open-source-security
fromInfoQ
1 day ago
Web frameworks

Empower Your Developers: How Open Source Dependencies Risk Management Can Unlock Innovation

Web frameworks
fromInfoQ
1 day ago

Empower Your Developers: How Open Source Dependencies Risk Management Can Unlock Innovation

Improving security in open-source dependencies is essential for effective risk management and innovation.
Information security
fromTechzine Global
4 weeks ago

Linux Foundation Receives $12.5 Million for Open Source Security

The Linux Foundation receives $12.5 million in grants from major tech companies to address security challenges in open source software caused by AI-generated vulnerability reports overwhelming maintainers.
Information security
fromSecurityWeek
4 weeks ago

Tech Giants Invest $12.5 Million in Open Source Security

The Linux Foundation received $12.5 million in grants from major tech companies to advance open source security through AI-powered solutions and maintainer support.
Software development
fromTheregister
4 weeks ago

Linux Foundation wants to shield FOSS devs from AI bug slop

Six major tech companies are funding a $12.5 million Linux Foundation initiative to help open source maintainers manage the surge of AI-generated vulnerability reports.
DevOps
fromSecuritymagazine
12 hours ago

Democratized Software, Democratized Risk: Who's Accountable When Everyone Codes?

AI-driven coding tools enable non-technical teams to create software, but they introduce vulnerabilities and require clear ownership and governance.
Software development
fromInfoWorld
1 day ago

Where will developer wisdom come from?

Agentic coding allows software creation without traditional developer wisdom, relying instead on AI like Claude Code for implementation and problem-solving.
Django
fromDjango Project
20 hours ago

Django Has Adopted Contributor Covenant 3

Django has adopted Contributor Covenant 3 as its new Code of Conduct, enhancing community standards and accountability.
fromTechCrunch
1 day ago

Fathom adds a bot-less meeting mode in a bid to take on Granola | TechCrunch

A lot of these bot-less tools don't indicate who said what in their captured transcript. Many people face problems with misattribution when they ask their meeting note-taker a question about what they might have said in a particular meeting a few months ago.
Roam Research
#ai-security
Information security
fromTNW | Anthropic
20 hours ago

Anthropic, Google, and Microsoft paid AI agent bug bounties, then kept quiet about the flaws

Aonan Guan exploited prompt injection attacks to hijack AI agents from Anthropic, Google, and Microsoft, stealing sensitive API keys and tokens.
Information security
fromTheregister
1 day ago

Anthropic, Google, Microsoft paid AI bug bounties - quietly

Security researchers exploited prompt injection attacks on AI agents to steal sensitive data without vendor disclosure of vulnerabilities.
Artificial intelligence
fromTheregister
6 days ago

Project Glasswing and open source: The good, bad, and ugly

Project Glasswing aims to enhance open source software security with $100 million and the Mythos AI program to identify vulnerabilities.
Information security
fromTNW | Anthropic
20 hours ago

Anthropic, Google, and Microsoft paid AI agent bug bounties, then kept quiet about the flaws

Aonan Guan exploited prompt injection attacks to hijack AI agents from Anthropic, Google, and Microsoft, stealing sensitive API keys and tokens.
Information security
fromTheregister
1 day ago

Anthropic, Google, Microsoft paid AI bug bounties - quietly

Security researchers exploited prompt injection attacks on AI agents to steal sensitive data without vendor disclosure of vulnerabilities.
Artificial intelligence
fromTheregister
6 days ago

Project Glasswing and open source: The good, bad, and ugly

Project Glasswing aims to enhance open source software security with $100 million and the Mythos AI program to identify vulnerabilities.
Artificial intelligence
fromWIRED
18 hours ago

AI Could Democratize One of Tech's Most Valuable Resources

Nvidia faces potential competition as startups like Wafer optimize AI code for various chips, challenging its dominance in AI hardware.
fromElectronic Frontier Foundation
1 day ago

Digital Hopes, Real Power: The Rise of Network Shutdowns

In 2024 alone, authorities imposed 304 internet shutdowns across 54 countries - the highest number ever recorded. This reflects a growing trend of governments treating connectivity as a weapon.
World politics
#github
fromTheregister
1 day ago
JavaScript

GitHub recalls Phabricator with preview of Stacked PRs

GitHub's Stacked PRs feature simplifies the review process for large pull requests by allowing them to be organized in a manageable stack.
Software development
fromInfoQ
4 days ago

GitHub Copilot CLI Reaches General Availability

GitHub's Copilot CLI is now generally available, enhancing AI-assisted development in software through natural language commands and autonomous workflows.
JavaScript
fromTheregister
1 day ago

GitHub recalls Phabricator with preview of Stacked PRs

GitHub's Stacked PRs feature simplifies the review process for large pull requests by allowing them to be organized in a manageable stack.
Software development
fromInfoQ
4 days ago

GitHub Copilot CLI Reaches General Availability

GitHub's Copilot CLI is now generally available, enhancing AI-assisted development in software through natural language commands and autonomous workflows.
#france
France news
fromTechCrunch
5 days ago

France to ditch Windows for Linux to reduce reliance on US tech | TechCrunch

France plans to transition government computers from Microsoft Windows to Linux to reduce reliance on U.S. technology.
France news
fromTechCrunch
5 days ago

France to ditch Windows for Linux to reduce reliance on US tech | TechCrunch

France plans to transition government computers from Microsoft Windows to Linux to reduce reliance on U.S. technology.
Python
fromPython Software Foundation Blog
2 days ago

Reflecting on Five Years as the PSF's First CPython Developer in Residence

The inaugural CPython Developer in Residence is leaving after five years, ensuring the program's continuity and future sponsorship through mid-2027.
fromComputerworld
2 days ago

The French government eyes alternatives to Windows

DINUM will coordinate a cross-ministerial plan to reduce dependence on suppliers outside Europe. Each ministry will be required to develop its own plan by this fall, covering the following areas: workstations, collaboration tools, antivirus software, artificial intelligence, databases, virtualization, and network equipment.
EU data protection
Tech industry
fromTheregister
5 days ago

Mozilla calls out Microsoft over Copilot push in Windows

Mozilla criticizes Microsoft's Copilot integration for lacking user consent and prioritizing business interests over customer choice.
Careers
fromEntrepreneur
6 days ago

How to Find a Tech Company That Matches Your Values

Identify non-negotiables and evaluate tech companies based on values and ethical practices.
fromThe Verge
6 days ago

Framework is teasing a lot of Linux for its April 21st event

No matter how inevitable the AI-takes-all scenario may sound, as long as there is a person in the world who still wants to own their means of computation, we will be here to build the hardware that enables it.
Digital life
Media industry
fromTechCrunch
6 days ago

EFF is the latest organization to leave X | TechCrunch

X's declining engagement has led the EFF to leave the platform after nearly 20 years due to significantly reduced post visibility.
Marketing tech
fromDigiday
6 days ago

While AI is building the web faster than ever, accessibility can't be left behind

AI has accelerated marketing processes, but speed can compromise accessibility, impacting customer experience and conversion rates for people with disabilities.
fromElectronic Frontier Foundation
2 days ago

EFF HOPE: Join Us This August!

Conferences like HOPE are where that community comes together to learn, connect, and push these ideals forward. EFF is proud to be at HOPE 26.
Privacy technologies
Software development
fromTheregister
19 hours ago

20-year-old Enlightenment E16 bug finally gets patched

Kamila Szewczyk fixed a 20-year-old bug in the Enlightenment E16 Linux window manager, emphasizing the value of maintaining older software.
Cryptocurrency
fromnews.bitcoin.com
1 week ago

Linux Foundation and Coinbase Launch x402 Foundation for AI Agents

The Linux Foundation launched the x402 Foundation to establish an open protocol for seamless internet-native payments.
Information security
fromTheregister
2 days ago

Fake Linux Foundation leader using Slack to phish devs

A malware campaign targets open source developers via Slack, impersonating a Linux Foundation official to steal credentials and compromise systems.
#open-source-software
DevOps
fromDevOps.com
2 weeks ago

Survey Surfaces Increased Reliance on Open Source Software to Build Apps - DevOps.com

Open source software adoption is prevalent, with 49% of IT professionals reporting increased usage, primarily due to cost savings and avoiding vendor lock-in.
DevOps
fromDevOps.com
2 weeks ago

Survey Surfaces Increased Reliance on Open Source Software to Build Apps - DevOps.com

Open source software adoption is prevalent, with 49% of IT professionals reporting increased usage, primarily due to cost savings and avoiding vendor lock-in.
#open-source
fromZDNET
20 hours ago
Software development

'Like handing out the blueprint to a bank vault': Why AI led one company to abandon open source

Software development
fromZDNET
2 weeks ago

How AI has suddenly become much more useful to open-source developers

AI tools are becoming increasingly useful for open-source maintainers, but legal and quality issues remain.
Software development
fromZDNET
20 hours ago

'Like handing out the blueprint to a bank vault': Why AI led one company to abandon open source

Cal is shifting from open source to proprietary licensing due to security risks posed by modern AI tools.
Python
fromThe Hacker News
2 weeks ago

The State of Trusted Open Source Report

AI is reshaping software development and security, influencing container image usage and vulnerability management.
Software development
fromZDNET
2 weeks ago

How AI has suddenly become much more useful to open-source developers

AI tools are becoming increasingly useful for open-source maintainers, but legal and quality issues remain.
fromThe Verge
6 days ago

The EFF is quitting X

Last year, our 1,500 posts earned roughly 13 million impressions for the entire year. To put it bluntly, an X post today receives less than 3% of the views a single tweet delivered seven years ago.
Privacy technologies
Information security
fromTechzine Global
2 days ago

Attackers are targeting developers via Slack and Google Sites

A targeted phishing campaign exploits trust in the open-source community, tricking developers into providing credentials and installing malicious software.
#linux
Software development
fromZDNET
2 days ago

The new rules for AI-assisted code in the Linux kernel: What every dev needs to know

Torvalds and Linux maintainers establish a formal policy for AI-assisted code contributions, emphasizing human responsibility and accountability.
Software development
fromZDNET
2 days ago

This Linux distro offers an easy DNS switcher - but there's more to it that I like

iDealOS is a new MXLinux-based distribution offering two editions, emphasizing choice and the potential for paid Linux models.
Software development
fromZDNET
2 days ago

The new rules for AI-assisted code in the Linux kernel: What every dev needs to know

Torvalds and Linux maintainers establish a formal policy for AI-assisted code contributions, emphasizing human responsibility and accountability.
Software development
fromZDNET
2 days ago

This Linux distro offers an easy DNS switcher - but there's more to it that I like

iDealOS is a new MXLinux-based distribution offering two editions, emphasizing choice and the potential for paid Linux models.
Software development
fromTechCrunch
2 days ago

Microsoft is working on yet another OpenClaw-like agent | TechCrunch

Microsoft is testing OpenClaw-like features for its Microsoft 365 Copilot tool aimed at enterprise customers with enhanced security controls.
Intellectual property law
fromTheregister
1 month ago

FSF urges AI vendors to liberate LLMs

The FSF received a settlement notice from Anthropic's copyright infringement lawsuit, with Anthropic agreeing to create a $1.5 billion compensation fund for authors whose works were used in AI model training without permission.
fromTechzine Global
1 week ago

Meta is developing open-source versions of its next frontier AI models

Meta is working on two proprietary frontier models: Avocado, a large language model, and Mango, a multimedia file generator. The open-source variants are expected to be made available at a later date.
Artificial intelligence
fromTheregister
3 days ago

Linux 7.0 debuts as Linus Torvalds ponders AI's impact

The last week of the release continued the same 'lots of small fixes' trend, but it all really does seem pretty benign, so I've tagged the final 7.0 and pushed it out.
Software development
#ai-in-open-source
fromZDNET
1 month ago
Miscellaneous

Why AI is both a curse and a blessing to open-source software - according to developers

fromZDNET
1 month ago
Artificial intelligence

Why AI is both a curse and a blessing to open-source software - according to developers

fromZDNET
1 month ago
Miscellaneous

Why AI is both a curse and a blessing to open-source software - according to developers

Artificial intelligence
fromZDNET
1 month ago

Why AI is both a curse and a blessing to open-source software - according to developers

AI can benefit open source when properly applied for security analysis, but causes harm when generating low-quality automated bug reports that overwhelm maintainers with false positives.
#digital-sovereignty
Software development
fromTNW | Eu
5 days ago

France orders all government ministries to ditch Windows for Linux in digital sovereignty push

France is migrating government workstations from Windows to Linux to enhance digital sovereignty and reduce dependencies on non-European technologies.
fromZDNET
1 month ago
Miscellaneous

Sick of Microsoft and Google? This new European office suite is a private, open-source alternative

Software development
fromTNW | Eu
5 days ago

France orders all government ministries to ditch Windows for Linux in digital sovereignty push

France is migrating government workstations from Windows to Linux to enhance digital sovereignty and reduce dependencies on non-European technologies.
fromZDNET
1 month ago
Miscellaneous

Sick of Microsoft and Google? This new European office suite is a private, open-source alternative

Intellectual property law
fromArs Technica
1 month ago

AI can rewrite open source code-but can it rewrite the license, too?

A developer rewrote open-source code using AI while having prior exposure to the original codebase, claiming the AI-generated version is structurally independent and not a derivative work despite not following traditional clean room practices.
Web frameworks
fromMedium
1 month ago

My 8-Year-Old Open-Source Project was a Victim of a Major Cyber Attack

A popular open-source project fell victim to a supply-chain attack through a development workflow loophole, threatening years of work and project reputation.
fromTheregister
6 days ago

Microsoft locks out top open source devs, blames process

Microsoft did not send me any emails or prior warnings. I have received no explanation for the termination and their message indicates that no appeal is possible. I have tried to contact Microsoft through various channels but I have only received automated replies and bots. I was unable to reach a human.
Software development
#ai
Software development
fromTheregister
1 week ago

AI slop got better, so now maintainers have more work

AI-generated reports improve quality but increase workload for maintainers, necessitating more reviewers in open-source projects.
Software development
fromArs Technica
1 week ago

Anthropic says its leak-focused DMCA effort unintentionally hit legit GitHub forks

Anthropic's DMCA takedown mistakenly removed legitimate forks of its code, leading to backlash and a request for reinstatement of affected repositories.
Fundraising
fromTypelevel
1 month ago

Spotify FOSS Fund 2024

Typelevel received €20,000 from Spotify's 2024 FOSS Fund to expand contributor support, infrastructure, and documentation initiatives.
#open-source-funding
fromTechCrunch
1 month ago
Non-profit organizations

A VC and some big-name programmers are trying to solve open source's funding problem, permanently | TechCrunch

fromTechCrunch
1 month ago
Non-profit organizations

A VC and some big-name programmers are trying to solve open source's funding problem, permanently | TechCrunch

Growth hacking
fromGitHub
2 months ago

GitHub - zenika-open-source/promote-open-source-project: How to promote my open source project?

Optimize README and documentation, provide demos, promote widely, and invite and reward contributors to grow and sustain an open source project.
Miscellaneous
fromTheregister
1 month ago

Open source package repositories face sustainability crisis

Open source repositories face unsustainable demand from companies misusing them as CDNs, prompting consideration of tiered payment systems where heavy users pay while individual developers remain free.
Software development
fromInfoWorld
1 month ago

How AI is changing open source

Open source shifted focus from consumer visibility to critical infrastructure layers like Kubernetes, observability, and platform engineering that power AI and cloud-native systems.
fromTheregister
1 month ago

Gentoo moves to Codeberg amid GitHub Copilot concerns

Gentoo's official migration from Microsoft-owned GitHub to Codeberg is underway, as the Linux distribution fulfills a pledge to ditch the code shack due to "continuous attempts to force Copilot usage for our repositories." The decision was made public last month, when Gentoo confirmed it intended to migrate repository mirrors and pull request contributions to the new home. On February 16, the organization revealed it now had a presence on Codeberg, where contributions could be submitted.
Miscellaneous
fromTechzine Global
1 month ago

AI code undermines control over open source and IP

While AI tools are lowering the barrier to development, the gap between speed and manageability is growing. In just over a year and a half, AI code assistants have grown from an experiment to an integral part of modern development environments. They are driving strong productivity growth, but organizations are not keeping up with the associated security and governance issues.
Information security
Artificial intelligence
fromFast Company
2 months ago

Mozilla's new AI strategy marks a return to its 'rebel alliance' roots

Mozilla will add controls in Firefox 148 enabling users to manage or disable individual AI features, offering an opt-out from integrated AI services.
fromInfoWorld
1 month ago

Open source maintainers are being targeted by AI agent as part of 'reputation farming'

The important shift is that software contribution itself is becoming programmable,
Artificial intelligence
Information security
fromTheregister
2 months ago

Too much open-source AI is exposing itself to the web

Exposed, homogenous Ollama open-source AI deployments form a monoculture vulnerable to zero-day exploits, remote compromise, resource hijacking, and unnoticed abuse.
Software development
fromInfoQ
1 month ago

GitHub's Points to a More Global, AI-Challenged Open Source Ecosystem in 2026

Open source faces unprecedented scale with 36 million new developers joining GitHub in 2025, requiring formal governance structures and strategies to manage AI-generated low-quality contributions.
Software development
fromTheregister
1 month ago

LibreOffice Online dragged out of the attic

The Document Foundation has resumed development of LibreOffice Online after it was dormant since 2020, following a community vote to revive the cloud-based project.
fromTechCrunch
1 month ago

For open-source programs, AI coding tools are a mixed blessing | TechCrunch

AI coding tools have caused as many problems as they have solved, according to industry experts. The easy-to-use and accessible nature of AI coding tools has enabled a flood of bad code that threatens to overwhelm projects. Building new features is easier than ever, but maintaining them is just as hard and threatens to further fragment software ecosystems. The result is a more complicated story than simple software abundance.
Software development
[ Load more ]