New MOSE podcast episode is now live!
@kelseyhightower talks about incentives to invest in OSS, decision making, avoiding maintainer burnout: buff.ly/4atCp3x
Follow the podcast on:
YouTube - buff.ly/3ZTzY5H
RSS - buff.ly/4iRM0VS or podcast platforms
Open-source is the world's software supply chain. While well-intended, the European Union's Cyber Resilience Act as currently drafted, has the probable effect of devastating European organizations who rely on this resource.
linuxfoundation.org/blog/ope…
"The EC has revealed a Cyber Resilience Act that will require manufacturers of connected devices to secure them properly before shipping, disclose and fix flaws promptly, and guarantee fixes will flow for five years."
theregister.com/2022/09/16/e…#iot#cybersecurity
Trying out LinkedIn articles. Today I took a look at the history of CVE-2022-1587 and compared how different distros rolled out the fixes and how different scanners represent the findings.
If you like boring, dry, technical archaeology, this is for you!
linkedin.com/pulse/cve-tales…
Liquor store clerk: I’m going to need to see some age verification
Me: I implemented the sockets API for Honeywell’s computer division using Bill Joy’s UC Berkeley research paper
Liquor store clerk: enjoy your beverage sir.
You might want to pay attention to @luis_in_brief, he knows his stuff, is FOSS from head to foot, and is a nice guy to boot. I'd follow him, if I were you (which I'm not): Setting new expectations for open source maintainers buff.ly/3ATWQns
Be humble. Be teachable. The universe is bigger than your view of the universe. There's always room for a new idea. Humility is necessary for growth. 🧠
Security is my top concern regarding Open Source. While the value FOSS brings is staggering, the inconsistent security posture of FOSS projects make the work of the OpenSFF and this new allstar tool important additions to the ecosystem. venturebeat.com/2021/08/11/o…
This Brookings Institute post does a good job highlighting the influence of open source projects on AI Policy. The same can be said for many/most of the modern software platforms in use today from Cloud, to Robotics, to Telecom, etc. brookings.edu/research/how-o…
Important highlight: TWO Election Interference EO reports dropped today. Section 1(a) report by the @ODNIgov & Section 1(b) report by @DHSgov@CISAgov@FBI@TheJusticeDept. 1(a) looks at the intel, 1(b) looks at any material affect on election systems & campaigns/political orgs.