Several Russian developers lose kernel maintainership status
51–60 of 314 posts
Re: Several Russian developers lose kernel maintainership status
#52Strongly opposed to any sort of sanction regime that results in this.
Let me spell it out for you: If Project P in Country A is identified by Country B as a potential target for planting cyber-attack-enabling backdoors, Country B has an incentive to find people to put a backdoor in P. If Country B is a free country with rights and ethics, they will say "Help us put a backdoor in P. We'll pay you very well for services rendered," or try to get someone who already works for Country B int…
True life-changing money, in all absolute sense.
Re: Several Russian developers lose kernel maintainership status
#53Re: Several Russian developers lose kernel maintainership status
#54Earlier quoted context omitted.
[flagged]
Let the Russians banish western developers from working on Russian projects.
Re: Several Russian developers lose kernel maintainership status
#55Earlier quoted context omitted.
Who is the “our” that owns Linux? It is a human project and any human should be able to be maintainer. Liberalism is what makes our society great, not paranoia and securitization.
So they can fork it and roll their own version of Linux. Russia-ux.
Re: Several Russian developers lose kernel maintainership status
#56Is there any new "compliance requirements" (sanctions I suppose?) that made this happen? Or is a delayed change since the sanctions started?
The latest change would be EU sanctions that disallow export of technology from March 2024: https://www.themoscowtimes.com/2024/05/17/microsoft-blocks-r... But this change here feels like there was pressure from the DoD or White House. A lot of sanctions seems to be introduced and enforced informally.
Re: Several Russian developers lose kernel maintainership status
#57Strongly opposed to any sort of sanction regime that results in this.
[flagged]
>The access Russia currently enjoys is the equivalent of Goebbels being allowed to anonymously publish front-page editorials in the Times
there's absolutely nothing you can do about this to prevent this.
troll farms can afford residential VPNs and can network with the US/EU via neighboring neutral countries or their overseas agents.
>while simultaneously contributing code to Bletchley Park co
there's absolutely nothing you can do about this to prevent this.
how do you know that John Johnson contributing code to some widely-used library is not Ivan Ivanson, a KGB sleeper agent? do you know John Johnson in person? does anyone else in your anonymous, informal, nebulous developer clique know any other contributor personally? are you sure that jkldjsafj, qweqweqwe and all the random anonymous guys with anime girl profile pictures who contribute code to a myriad projects are not Russian plants?
>I would like to remind you of the recent XZ utils backdoor into SSH contributed by a less than friendly nation state.
case in point to the above: no one fucking knows who did it. it could be Russia, it could be China, it could be Israel, it could be NSA/CIA.
Re: Several Russian developers lose kernel maintainership status
#58Strongly opposed to any sort of sanction regime that results in this.
Let me spell it out for you: If Project P in Country A is identified by Country B as a potential target for planting cyber-attack-enabling backdoors, Country B has an incentive to find people to put a backdoor in P. If Country B is a free country with rights and ethics, they will say "Help us put a backdoor in P. We'll pay you very well for services rendered," or try to get someone who already works for Country B int…
If your system relies on people being in "a free country with rights and ethics", then you have a bad system widely open to abuse. After all, who decides which country is "free" and which is not? White house? Should you exclude people from all "non-free" countries?
Re: Several Russian developers lose kernel maintainership status
#59Earlier quoted context omitted.
Let me spell it out for you: If Project P in Country A is identified by Country B as a potential target for planting cyber-attack-enabling backdoors, Country B has an incentive to find people to put a backdoor in P. If Country B is a free country with rights and ethics, they will say "Help us put a backdoor in P. We'll pay you very well for services rendered," or try to get someone who already works for Country B int…
While everything you mention is absolutely true, to the credit of the opinion of whimsicalism, any maintainer worldwide could get offered tons of bitcoins to integrate a backdoor / "bug". True life-changing money, in all absolute sense.
Re: Several Russian developers lose kernel maintainership status
#60Strongly opposed to any sort of sanction regime that results in this.
Let me spell it out for you: If Project P in Country A is identified by Country B as a potential target for planting cyber-attack-enabling backdoors, Country B has an incentive to find people to put a backdoor in P. If Country B is a free country with rights and ethics, they will say "Help us put a backdoor in P. We'll pay you very well for services rendered," or try to get someone who already works for Country B int…
Not that I disagree with the move 100%, but I don't think it's that clear cut.