Live data from Hacker News

We all depend on open source. We will defend it together

akrites.org

111–120 of 257 posts

Re: We all depend on open source. We will defend it together

#111

> We are joined by Amazon Web Services, Anthropic, Chainguard, Cisco, Citi, Endor Labs, Ericsson, Google, IBM, JPMorganChase, Microsoft and GitHub, NVIDIA, OpenAI, RapidFort, Red Hat, Rust Foundation, Sonatype, Vodafone, and Zscaler A lot of open source folks are going to be very skeptical, rightly so, of this group of players. > ... to find, fix, and responsibly disclose vulnerabilities in critical open source softw…

> alienates the community

That's a feature to them, not a bug. They want the software and don't want the community.

Re: We all depend on open source. We will defend it together

#112
post #78

After reading this. I realize how different Asian and Western consciousness really are. My entire technology stack was built on Microsoft's ecosystem, not on open source. This was Microsoft's attempt to expand their base for the corporate hiring market and OS market share. Conversely, open source was a huge barrier for me. When I have a product I've built, I have to get past open source, but accessing open source com…

I think this is conflating opensource-corporate and english-non-english.

If you ask american/european/english-speaking developers about coding, it will mostly be about/in the context of corporate environments rather than open source too! The majority do not actively or primarily contribute to open source projects, but instead corporate environments as well.

In an alternative timeline where the lingua franca isn't english, I can still see open source culture exist; I don't think the desire to publish and cooperate in public is an inherently "western" culture. It will also run into the same conflict of interest between Open-Source and Corporate: one prefers transparency and full-disclosure, the other prefers control in the interest of minimizing risk.

Re: We all depend on open source. We will defend it together

#114
post #95

> We are joined by Amazon Web Services, Anthropic, Chainguard, Cisco, Citi, Endor Labs, Ericsson, Google, IBM, JPMorganChase, Microsoft and GitHub, NVIDIA, OpenAI, RapidFort, Red Hat, Rust Foundation, Sonatype, Vodafone, and Zscaler A lot of open source folks are going to be very skeptical, rightly so, of this group of players. > ... to find, fix, and responsibly disclose vulnerabilities in critical open source softw…

My best understanding from reading this is a) where possible and b) where necessary. This is the Linux Foundation, so it must put OSS and community first, surely. People talk about contributing financially, but how and to what end? Most projects aren't set up to accept or utilise donations. That said, I would say we should be providing all OSS projects with significant access to AI in order to review their codebases…

> This is the Linux Foundation, so it must put OSS and community first, surely.

Linux Foundation is run by the said called corporates from the list. So is Rust Foundation. Linux in itself is safe cos Linus controls it. Not the rest of the projects LF controls.

Re: We all depend on open source. We will defend it together

#115
post #95

> We are joined by Amazon Web Services, Anthropic, Chainguard, Cisco, Citi, Endor Labs, Ericsson, Google, IBM, JPMorganChase, Microsoft and GitHub, NVIDIA, OpenAI, RapidFort, Red Hat, Rust Foundation, Sonatype, Vodafone, and Zscaler A lot of open source folks are going to be very skeptical, rightly so, of this group of players. > ... to find, fix, and responsibly disclose vulnerabilities in critical open source softw…

My best understanding from reading this is a) where possible and b) where necessary. This is the Linux Foundation, so it must put OSS and community first, surely. People talk about contributing financially, but how and to what end? Most projects aren't set up to accept or utilise donations. That said, I would say we should be providing all OSS projects with significant access to AI in order to review their codebases…

Um, the Linux Foundation is an industry body, not a user or community group. You seem confused?

Re: We all depend on open source. We will defend it together

#116
post #108
post #90

Earlier quoted context omitted.

I would be glad to learn if you are willing to explain, this what I found from trusted sources, but it would be great to know if there’s additional nuance.

Akritai were locals who were to be used as the defenders of the borders instead of deploying regular Army or mercenaries. For this reason they were given land (so as to have skin in the game) and tax breaks. When the tax breaks stopped the Akritai rapidly vanished. These are also mentioned in Wikipedia pages. So, in terms of a security project an Akritas would be you running an EDR agent on a machine that you own, no…

[deleted]

Re: We all depend on open source. We will defend it together

#117

Earlier quoted context omitted.

> Defeatism is easy I prefer easy. If you prefer difficult, more power to you.

It's the same easy as falling out of a plane without a parachute. Gravity will do all the work but you'll not like what happens at the bottom.

Isn't it easier just not to board the plane, who really enjoys being at an airport?

Re: We all depend on open source. We will defend it together

#119
post #69
post #55

Earlier quoted context omitted.

To save others a search: > The akritai (singular akrites) is a term used in the Byzantine Empire in the 9th–11th centuries to denote the frontier soldiers guarding the Empire's eastern border, facing the Muslim states of the Middle East. (Wikipedia) Akron means edge or border, so "frontiersman" or "those of the border". EDIT: Commenters seem upset about the Muslim part, I didn’t mean to imply anything, you cannot jus…

This is a very simplified and uninformed view of what the Akritai were. The name choice is so wrong, it cannot even be called out as cultural appropriation, because it is far worse than that. LF just stick with languages you understand.

[deleted]

Re: We all depend on open source. We will defend it together

#120
post #81

Earlier quoted context omitted.

In a certain way, moving from "Free Software" to "Open Source" started this transition and it's not slowing down.

Imagine if the AGPL had become the default license for open source projects, as it was intended to when the service provider loophole in the GPL became apparent. The software industry would be unrecognizable. Instead, millions of developers now gift corporations their work by releasing everything under MIT or Apache, and those corporations take from that treasure trove what they want and give back what they want, whi…

lying about the license to linus probably wasn't a smart move for AGPLv3 adoption. In my experience the virality clause is the main reason those projects don't get used therefor sponsored.
Post reply on HN