2026-05-05 16:42:00
Some organizations are doing panicky things over Mythos.
NHS Goes To War Against Open Source
https://shkspr.mobi/blog/2026/05/nhs-goes-to-war-against-open-source/
Open source registries don't have enough money to implement basic security: Free beer is great. Securing the keg costs money.
Open source registries are in financial peril, a co-founder of an open source security foundation warned after inspecting their books. And it's not just the bandwidth costs that are killing them.
🫴
Sources: Meta is preparing to release the first AI models developed under Alexandr Wang, with plans to offer versions of those models via an open source license (Ina Fried/Axios)
https://www.axios.com/2026/04/06/meta-open-source-ai-models
If you’re a open source person yelling at people to “do it yourself” when they have valid criticism of open source projects (yours or others) you 1) need to touch some grass (it can be free and open source grass) and 2) stop doing that
Einige der zuletzt hier besonders häufig geteilten #News:
OpenReception 1.0: Open-Source-Terminverwaltung für Arztpraxen ist fertig
Inference cloud startup DeepInfra raised a $107M Series B co-led by 500 Global and Georges Harik; it currently supports more than 190 open models (Mike Wheatley/SiliconANGLE)
https://siliconangle.com/2026/05/04/deepinfra-la…
Noch ein paar der zuletzt hier besonders häufig geteilten #News:
OpenReception 1.0: Open-Source-Terminverwaltung für Arztpraxen ist fertig
für die sammlung von #icons-sammlungen:
"CoreUI Icons"
https://www.designerinaction.de/gestaltung/coreui-icons-open-source-icon-set…
The European Commission has presented the European Technological Sovereignty Package, which aims to boost European performance in semiconductors, AI, cloud and open source.
https://www.computing.co.uk/news/2026…
At this year’s French Open, the air is particularly thick with tension.
After a tournament of shocks and upsets, only five top-10 seeds and one Grand Slam champion are left across the men’s and women’s draws.
The stakes always get higher deeper into a tournament, but the openness of this year’s draw further complicates matters.
Lower-ranked players are facing unusual situations with less formidable foes in their way,
and with that comes expectation.
A less forebo…
Meet Cindy Cohn, Executive Director of the Electronic Frontier Foundation (EFF), leading up to her keynote on Saturday at Southern California Linux Expo.
https://www.linkedin.com/posts/kimmcmahon-marketing_privac…
Overal is een motie voor ...
Dankzij @… kunnen we even bijna 25 jaar terug in de tijd naar de motie Vendrig die in 2002 voorstelde dat we 20 jaar geleden (2006) aan open source standaarden zouden voldoen...
'...
verzoekt voorts de regering ervoor te zorgen dat in 2006 alle door de publieke sector gebruikte software aan open standaarden voldoet;
...'
Motie Vendrig
#nlpol #DigitaleSoevereiniteit
RE: https://shkspr.mobi/blog/2026/05/nhs-goes-to-war-against-open-source/
It’s OK, Palantir should still have access.
MX Linux Pushes Back Against Age Verification: A Stand for Privacy and Open Source Principles :mxlinux: 👏
https://www.linuxjournal.com/content/mx-linux-pushes-back-against-age-verification-stand-privacy-and-open-sou…
Weekly Climate Solutions Digest #27!! 💖🌊✨
https://www.forpeopleandpla.net/weekly-climate-solutions-digest-27/?utm_source=bri-mastodon&utm_medium=social&src=mstdn
🇺🇦 #NowPlaying on BBCRadio3's #InTune
Elin Manahan Thomas, George Frideric Handel, Orchestra of the Age of Enlightenment & Harry Christophers:
🎵 Eternal source of light divine (Birthday Ode for Queen Anne)
#Spotify
Source: OpenAI and White House are discussing a government stake in the company, to seed something like the "Public Wealth Fund" that OpenAI outlined earlier (CNBC)
https://www.cnbc.com/2026/06/05/trump-open-ai-altman-stake.html
Sovereignty Is Engineered, Not Procured
Europe often asks whether it can build a company like Palantir: a software champion capable of serving intelligence, defence, law enforcement, crisis response, cyber defence, and public-sector decision-making at scale.
The usual answer is that Europe lacks data, capital, talent, or legal room. I do not think this is the full story.
The capacity is there. The data is there. The technical talent is there. The public-sector problems are …
🇺🇦 #NowPlaying on KEXP's #VarietyMix
Jump Source:
🎵 Empty Bars (feat. Billy Woods)
#JumpSource
https://jumpsource.bandcamp.com/track/empty-bars-ft-billy-woods
https://open.spotify.com/track/3G5gureMPAj9d5OqjtZrqs
can’t fucking believe that “omg we’re down all the time b/c we're being ddosed by too much code 🥺”-github is fucking hosting a fucking meet and greet with the fucking dude who’s responsible for some of the worst offenses by enabling an legion of mac minis flooding the world with slop.
guess github is now fully integrated into the org chart
Die EU legt ihr „European Technological Sovereignty Package" vor: Chips Act 2.0, Cloud and AI Development Act, Open-Source-Strategie, Energie-Fahrplan. 80 Prozent der europäischen Tech-Infrastruktur kommt aktuell von außerhalb Europas. Das Paket soll das ändern — t3n erklärt die vier Säulen. #DigitaleSouveränität
"H&M Foundation launches open-source toolkit to cut textiles emissions"
#Clothes #Fashion #Emissions
Open source registries don't have enough money to implement basic security: Free beer is great. Securing the keg costs money.
Open source registries are in financial peril, a co-founder of an open source security foundation warned after inspecting their books. And it's not just the bandwidth costs that are killing them.
🫴
Noch ein paar der zuletzt hier besonders häufig geteilten #News:
OpenReception 1.0: Open-Source-Terminverwaltung für Arztpraxen ist fertig
One aspect of open source development that some organisations have difficulty with, is that it's such a good signal of an organisation's resource priorities. There's no point putting out a statement saying you're still committed to something, when a key project repo hasn't had a commit in months.
And here is a first try on the snippet for open vs. closed source. Honestly, it doesn't look as good, as the first one. Maybe because, the flag colors are missing?
Any other ideas?
https://fingolas.eu/OpenClosed/
Chinese firms
— some with links to the People’s Liberation Army
— marrying artificial intelligence with open-source data
to market information they claim can “expose” the movements of U.S. forces.
Beijing has sought to distance itself from any direct involvement in the Iran war, but the firms
— many of which have emerged in the past five years as part of the government’s push to harness private AI for military use
— are capitalizing on the conflict.
U.S. …
Claude Code source leak reveals how much info Anthropic can hoover up about you and your system
"Anthropic's Claude Code lacks the persistent kernel access of a rootkit. But an analysis of its code shows that the agent can exercise far more control over people's computers than even the most clear-eyed reader of contractual terms might suspect. It retains lots of your data and is even willing to hide its authorship from open-source projects that reject AI."
🇺🇦 #NowPlaying on BBCRadio3's #EssentialClassics
Elin Manahan Thomas, George Frideric Handel, Orchestra of the Age of Enlightenment & Harry Christophers:
🎵 Eternal source of light divine (Birthday Ode for Queen Anne)
https://open.spotify.com/track/301GhrxRRyQ0h8NP6NQQxc
It feels obvious that llm's have no place in free and open source software. Apparently it isn't, at least not to everyone. I recently became interested in exploring the scope of the problem after finding out that both Vim and Neovim not only don't have policies banning llm contribution, but already contain fairly significant amounts of llm generated code.
«KI baut Open-Source-Projekte in Minuten als kommerzielle App nach:
KI stellt die Open-Source-Community vor eine grundlegende Herausforderung - Neue Werkzeuge sind inzwischen in der Lage, komplette Softwareprojekte nahezu automatisch nachzubilden. Das wirft drängende Fragen zu Urheberrecht und Fairness auf.»
Das KI Daten klaut um Faule zu "bereichern" sollte eigentlich allen mittlerweile bewusst sein.
🤖
We’re announcing the publication of a Trust, Legal & Safety docs section.
Transparency and security are at the heart of what we do. Now, all our governance documents, legal policies, security practices, and community standards live in one place:
🔗 https://docs.opencommit.eu/trust/
This …
What is the maximum amount of value destruction that could be wrought on the big centralized commercial AI vendors, and the maximum amount of acceleration of the ecosystem of open source and community-led
alternatives, using the knowledge gained from the leak of the Claude Code source code?
Einige der zuletzt hier besonders häufig geteilten #News:
Schadcode-Sicherheitslücken in Werbeblocker Pi-hole geschlossen
So Anthropic employees are using Claude Code to contribute AI-generated code to open source repositories and hiding the fact using their own internal “undercover mode”.
Totally trustworthy people.
(Any open source project that at the very least requires disclosure of AI-authored contributions should immediately ban Anthropic employees on principle.)
#AI
Something for the US #TTRPG bubble:
https://open.substack.com/pub/exeuntpress/p/im-teaching-free-game-design-cl…
Bayerns Microsoft-Ausgaben stiegen von 30 auf 49 Millionen Euro — und der Milliarden-Rahmenvertrag hätte das nochmal ordentlich multipliziert. Jetzt heißt es „ausgewogener Mix" aus Open Source und Standardsoftware. Ausgewogen. Na dann. Besser spät als nie. Schleswig-Holstein macht das schon länger vor, Frankreich auch. Manchmal braucht man halt Druck @…
Google Threat Intelligence Group (GTIG) has linked the recent axios NPM supply chain attack to a suspected North Korean threat actor, UNC1069 (and not TeamPCP).
https://techcrunch.com/2026/03/31/hacker-hijacks-axios-open-source-proj…
“they stole my apes, Odo” — Still relevant
“I SEEM TO RECALL YOU TAKING GREAT GLEE IN EXPLAINING THAT CENTRALISED PLATFORMS WERE OBSOLETE THANKS TO NFT'S.”
“WELL-”
“BUT NOW YOU WANT THE AUTHORITIES HELP IN POLICING THE SALE OF THESE…THINGS.”
https://mastodon.social/@Wraithe/11159
SCOTUS hears birthright citizenship arguments
https://open.substack.com/pub/anntelnaes/p/scotus-hears-birthright-citizenship?utm_source=direct&utm_campaign=post-expanded-sha…
Ten years contributing to an open source project teaches you things no documentation ever could. Jason Gerlowski, PMC Chair of Apache Solr, is at #bbuzz26 to share what a decade of OSS security experience actually looks like in practice.
Learn more: https://2026.berlinbuzzwords.de/session/oss-security-lessons-from-10-years-at-apache-solr/
Get your ticket: https://2026.berlinbuzzwords.de/tickets/
Boosted in Reddit: <https://www.reddit.com/r/freebsd/comments/1tu5ezw/open_source_organisations_weigh_in_on_age/>
– and BSD Cafe Billboard <
I knew it was this way but it's really hitting me today how much the Open Source movement and copyright maximalism supplanted the idea of free software, and again how much the Free Software movement turned from a close ideological cousin of the remix and open culture movement into a culture of legalism. At the same time, copyright law itself has been extended to be near-immortal copyrights rather than brief monopolies to spur creation by enabling profit from creating works.
Several years ago, a street medic described a system like this and wanted to know if it could be built.
https://hackaday.com/2022/09/08/the-tak-ecosystem-military-coordination-goes-open-source/
Back then there was just no way to make it happen. Hardware was too expensive. We couldn't really ever get it cheap enough, per medic, to deploy. Best I could put together was a bunch of burner phones.
But now it's starting to really make sense. LoRa is cheap, and possibly cheaper in bulk. And it wouldn't be necessary to build everything since ATAK-CIV exists and has several open source implementations. It can even tie in to drones (which are illegal to bring to protests in at least a few states).
This has a lot of potential applications for street medic coordination, protest marshal coordination, and for airsoft teams...
A suspected North Korean hacker has hijacked and modified a popular open source software development tool
to deliver malware that could put millions of developers at risk of being compromised.
On Monday, a hacker pushed malicious versions of the widely used JavaScript library called Axios,
which developers rely on to allow their software to connect to the internet.
The affected library was hosted on npm, a software repository that stores code for open source projects…
Being an Open Source developer is the closest I ever got to being a scientist. But at least my code has taken flight on Mars (didn't get the github badge for it, though, as the relevant project is not github hosted)
A lot of open source projects take care to preserve compatibility with the past, so that changes do not break the projects of existing users.
But then there are others. In my list of "damn the past, full speed ahead on incompatible changes!!" are my most recent encounters:
- Python (not only was the Python 2 abandonment unforgivable and cost many of us a lot of useless conversion work, but the versions of Python 3 seem to change from one to the next to the degree that…
"Using Open Source Tools to Capture Closed Captions and Timecode": guest post by Morgan Morel of the National Audio-Visual Conservation Center at the Library of Congress @ the LoC's blog "The Signal"
https://blogs.loc.gov/thesignal/2026/03/…
Bitte petition unterzeichnen und teilen.
Erhaltet den open #basketball court am Rütlicampus in #Neukölln #Berlin
Totgesagte leben länger: Lokale Bilder-KI Amuse 3.2.0 erschienen
Die Entwicklung an der Bild- und Video-KI Amuse wurde eingestellt, die Quellen als Open Source veröffentlicht. Nun gibt es erste Updates.
htt…
RadixArk, led by former xAI employee Ying Sheng, raised a $100M seed at a $400M valuation to make AI inference more efficient via its open-source SGLang engine (Meghan Bobrowsky/Wall Street Journal)
https://www.wsj.com…
Open Source in der Verwaltung rechtlich gestärkt
https://www.linux-magazin.de/news/open-source-in-der-verwaltung-rechtlich-gestaerkt/
"Software-Beschaffung für öffentliche Verwaltungsbehörden sind durch die EVB-IT geregelt. Dank aktu…
«Kalifornisches #Gesetz zwingt Betriebssysteme zu Altersabfragen:
Ab 2027 müssen #Betriebssystem'e in #Kalifornien das Geburtsdatum neuer Nutzer abfragen. Das sieht der Digital Age Assurance A…
Quelloffenes HDMI 2.1 kommt endlich für Linux
Ein AMD-Entwickler kündigt vollwertiges HDMI 2.1 für den Linux-Open-Source-Treiber an. Auch für den Nouveau-Treiber gibt es eine erste Implementierung.
https://www.
Cloudflare acquires VoidZero, the company behind Vite, Vitest, Rolldown, Oxc, and Vite frameworks, and says the projects will stay open source (Cloudflare)
https://blog.cloudflare.com/voidzero-joins-cloudflare/
I find a form of active de-computing is one of the best ways to cope with the current exceeding world pain exhaustion & LLM brain drain around, i.e. doing more things offline, with your hands/body, being more present in your world, getting into crafts/materials, creating/fixing/mending things and sharing your lessons learned with others (in that sense quite in the spirit of open source culture).
To some this is may be just another form of entitled escapism, though I see it as activ…
Something for the US #TTRPG bubble:
https://open.substack.com/pub/exeuntpress/p/im-teaching-free-game-design-cl…
Was wie „Internetkultur“ verharmlost wird, ist oft gezielte Gewalt: Drohungen, Swatting, sexualisierte Erniedrigung. Laut ZDF Magazin Royal strukturiert, überwiegend männlich – und politisch anschlussfähig. Tim Schlotfeldt zeigt: AfD-Akteure nutzen genau diese Dynamiken. Wen wundert es?
#AfD #DigitaleGewalt
@… no, that's not what I'm telling you.
I prefer to believe that most people will be thoughtful.
"… a huge number of bugs. I have so many bugs in the Linux kernel that I can't report because I haven't validated them yet. I'm not going to make some open source developer validate bugs that I haven't checked yet. I'm not going to send …
Several years ago, a street medic described a system like this and wanted to know if it could be built.
https://hackaday.com/2022/09/08/the-tak-ecosystem-military-coordination-goes-open-source/
Back then there was just no way to make it happen. Hardware was too expensive. We couldn't really ever get it cheap enough, per medic, to deploy. Best I could put together was a bunch of burner phones.
But now it's starting to really make sense. LoRa is cheap, and possibly cheaper in bulk. And it wouldn't be necessary to build everything since ATAK-CIV exists and has several open source implementations. It can even tie in to drones (which are illegal to bring to protests in at least a few states).
This has a lot of potential applications for street medic coordination, protest marshal coordination, and for airsoft teams...
RE: https://dice.camp/@realms/116459545804565917
I'd argue that "AI"-based development creates a bigger attack surface on closed source/proprietary software than open source software:
1. It's more likely that internal software development uses LLMs as they're most affordable to companies; leaving them more vulnerable to prompt injection and other types of attacks targeting LLM use.
2. It's more likely that internal commits aren't vetted as much (or even purely vibe-coded) as ones in open source projects.
3. It's more likely that attacks on open source projects are discovered quicker.
Also a reminder that the "Mythos" thing—like all the other doomerist things coming out of "AI" companies—is a marketing stunt to get Anthropic free press coverage.
Google attributes the supply chain attack on HTTP client Axios to a suspected North Korean threat actor it calls UNC1069 (Lorenzo Franceschi-Bicchierai/TechCrunch)
https://techcrunch.com/2026/03/31/hacker-hijacks-axios-open-source-…
This has been on my mind for *weeks*. I've been saying for a long time that it's possible to have an AI that only uses consensually-gathered content, is open source open weights, runs on your own machine, and is designed to empower creators instead of exploit them. Well, we've finally got one. https://www.
Google introduces Gemma 4 12B, a unified, encoder-free open multimodal model that can run locally on devices with 16GB of VRAM or unified memory (Carl Franzen/VentureBeat)
https://venturebeat.com/technology/goo…
Several years ago, a street medic described a system like this and wanted to know if it could be built.
https://hackaday.com/2022/09/08/the-tak-ecosystem-military-coordination-goes-open-source/
Back then there was just no way to make it happen. Hardware was too expensive. We couldn't really ever get it cheap enough, per medic, to deploy. Best I could put together was a bunch of burner phones.
But now it's starting to really make sense. LoRa is cheap, and possibly cheaper in bulk. And it wouldn't be necessary to build everything since ATAK-CIV exists and has several open source implementations. It can even tie in to drones (which are illegal to bring to protests in at least a few states).
This has a lot of potential applications for street medic coordination, protest marshal coordination, and for airsoft teams...
Open source isn’t free. We’re just not paying for it: Who maintains the maintainers?
A lot of things don’t add up in the world of software. The skills gap remains stubbornly wide, with IT and data skills the hardest to recruit for five consecutive years. Yet, at the same time, entry level roles are declining as employers redeploy existing employees rather than hiring new ones.
🧑💻
Microsoft releases ASSERT, an open-source framework that lets developers generate and run AI behavior tests using natural-language descriptions (Ram Iyer/TechCrunch)
https://techcrunch.com/2026/06/02/new-microsoft-tool-lets-de…
Off the coast of California, dozens of marine protected areas have been established in recent decades.
These patches of the open ocean either prohibit or tightly restrict commercial and recreational fishing.
Off the coast of Santa Barbara, we set sail with members of the environmental group Santa Barbara Channelkeeper to learn about what's being done to protect our marine habitat.
Chinese AI developer MiniMax launches M3, a new coding model that it says rivals Opus 4.7, costing $0.12 per 1M input tokens, compared with $5 for Opus 4.7 (Juro Osawa/The Information)
https://www.theinformation.com/briefings/chin…
A whistleblower alleges Delve pitched a modified copy of open-source no-code tool SimStudio as its own, a practice that could violate the software's license (Julie Bort/TechCrunch)
https://techcrunch.com/2026/04/01/the-reputation-of-tr…
Zwischen Markt und Regulierung: Streit um Open Access
Open Access ist Konsens im Glasfasermarkt. Aber wie weit reicht die Pflicht zur Netzöffnung? Da gehen die Meinungen auseinander.
https://www.
Arcee AI releases Trinity-Large-Thinking, a 399B-parameter MoE AI model under an Apache 2.0 license, allowing full customization and commercial use (Carl Franzen/VentureBeat)
https://venturebeat.com/technology/arcees-new-open-sou…
How tech companies are using open source initiatives to achieve critical strategic goals and how such efforts are reshaping industries like AI, AVs, and more (Bill Gurley/Bill's Substack)
https://p3institute.substack.com/p/from-open-source-software-to-open…
Keine Alterskontrolle für Linux
Gesetze, die eine Altersverifikation in Betriebssystemen vorsehen, nehmen zumindest in Kalifornien und Colorado wohl Open-Source aus.
https://www.heise.de/news/Keine-Alterskont…
Starlette, an open-source Python framework underpinning FastAPI, has a vulnerability, called BadHost, that can allow hackers to bypass authorization (Dan Goodin/Ars Technica)
https://arstechnica.com/information-te
Mistral launches Voxtral TTS, an open-source enterprise text-to-speech model that supports nine languages, including Hindi and Arabic, based on Ministral 3B (Ivan Mehta/TechCrunch)
https://techcrunch.com/2026/03/26/mistral-releases-a-new-open…
Cohere launches Transcribe, its first voice model; the 2B-parameter, open-source speech recognition model handles tasks like notetaking and speech analysis (Ivan Mehta/TechCrunch)
https://techcrunch.com/2026/03/26/cohere-launches-a…
OpenAI releases Symphony, an open-source spec for agent orchestration that turns a project-management board like Linear into a control plane for coding agents (OpenAI)
https://openai.com/index/open-source-codex-orchestration-symphony
Meta: Neue KI-Modelle sollen teils Open-Source werden
Meta plant, neue KI-Modelle zu veröffentlichen. Die sollen in Teilen unter Open-Source-Lizenzen herausgegeben werden.
https://www.heis…
Matt Mullenweg says EmDash, while open source, is designed "to sell more Cloudflare services" and lacks the cross-platform democratization of WordPress (Matt Mullenweg)
https://ma.tt/2026/04/emdash-feedback/
Noch ein paar der zuletzt hier besonders häufig geteilten #News:
Münchens IT-Wende: Open Source ist für die neue Koalition der Normalfall
University of Toronto researchers claim to have developed a "worm" powered by open source AI that exploits known flaws and tailors attacks for each computer (Cade Metz/New York Times)
https://www.nytimes.com/2026/06/02/technol
SenseTime releases SenseNova-U1, an open-source image model that it says can "read" images without translating them to text, reducing computing power needs (Zeyi Yang/Wired)
https://www.wired.com/story/chinese-ai-giant-sensetime-is-…
OpenAI releases a set of prompts designed to be used with its open-weight safety model gpt-oss-safeguard that lets developers make their apps safer for teens (Amanda Silberling/TechCrunch)
https://techcrunch.com/2026/03/24/openai-adds…
Xiaomi open sources MiMo-V2.5 and MiMo-V2.5-Pro under the MIT License, saying both models are among the most efficient available for agentic "claw" tasks (Carl Franzen/VentureBeat)
https://venturebeat.com/ai/open-source…
Cal.com, which provides scheduling software, is moving its core open-source codebase to a closed repository, citing the dangers of AI hacking its open code (Steven Vaughan-Nichols/ZDNET)
https://www.zdnet.com/article/ai-security-worries-force-company-t…
Microsoft announces the Agent Control Specification, an open-source standard that aims to provide granular, consistent governance over AI agent behavior (Ram Iyer/TechCrunch)
https://techcrunch.com/2026/06/02/microsoft-offers-devs-a-better-w…
After EV maker Fisker's collapse, ~4,000 car owners formed a nonprofit to keep their cars working by reverse-engineering software and building open-source tools (Fred Lambert/Electrek)
https://electrek.co/2026/05/16/fisker-ocean-open-source-ev-story-aft…