2026-04-28 08:51:23
Starlette, an open-source Python framework underpinning FastAPI, has a vulnerability, called BadHost, that can allow hackers to bypass authorization (Dan Goodin/Ars Technica)
https://arstechnica.com/information-te
Open source isn’t free. We’re just not paying for it: Who maintains the maintainers?
A lot of things don’t add up in the world of software. The skills gap remains stubbornly wide, with IT and data skills the hardest to recruit for five consecutive years. Yet, at the same time, entry level roles are declining as employers redeploy existing employees rather than hiring new ones.
🧑💻
Something for the US #TTRPG bubble:
https://open.substack.com/pub/exeuntpress/p/im-teaching-free-game-design-cl…
Zwischen Markt und Regulierung: Streit um Open Access
Open Access ist Konsens im Glasfasermarkt. Aber wie weit reicht die Pflicht zur Netzöffnung? Da gehen die Meinungen auseinander.
https://www.
Y2K38 kommt. Milliarden Systeme sind betroffen.
Open Source wird kritisiert – dabei entstehen die Lösungen oft genau dort.
Das Problem ist nicht der Code.
Das Problem ist, wie wir damit umgehen.
👉 Wer zahlt am Ende die Rechnung?
https://y2k38.ch/y2k38-open-source-suende…
This has been on my mind for *weeks*. I've been saying for a long time that it's possible to have an AI that only uses consensually-gathered content, is open source open weights, runs on your own machine, and is designed to empower creators instead of exploit them. Well, we've finally got one. https://www.
OpenAI releases Symphony, an open-source spec for agent orchestration that turns a project-management board like Linear into a control plane for coding agents (OpenAI)
https://openai.com/index/open-source-codex-orchestration-symphony
Wie informieren Solawis ihre Mitglieder digital über den Inhalt und die Verwendung des Ernteanteils?
Wie können Ernteteilende ihren Anteil online anpassen oder pausieren?
Wir stellen beim Online-Stammtisch im Juni Open Source Web-Apps vor, die Solawis nutzen können.
🗓️ 17.06., 19:30 Uhr | ohne Anmeldung
Something for the US #TTRPG bubble:
https://open.substack.com/pub/exeuntpress/p/im-teaching-free-game-design-cl…
Open source has become critical digital infrastructure over the past 25 years, but its future depends on human resilience as much as code. Contributor burnout, funding gaps, and new regulations are real challenges, and Ruth has spent nearly two decades at the heart of open source communities working through exactly these kinds of problems. It's a session to look forward to!
Join us for Berlin Buzzwords on June 7-9 at Kulturbrauerei or online. Get your tickets! https://2026.berlinbuzzwords.de/
Since his first years as a top player, Jannik Sinner has long had one major weakness.
The hotter it is, the more vulnerable he becomes.
It nearly toppled him at January’s Australian Open, before Novak Djokovic did the job instead.
On Thursday, with temperatures climbing toward the 90s at Roland Garros, Sinner could not endure.
In the second round of the French Open, the world No. 1 fell victim to Juan Manuel Cerúndolo of Argentina, the world No. 56.
He grew dizzy…
This tangled.org GitHub alternative built on top of ATproto, open source, with self hosting capabilities and the ability to run your own CI sure seems like a gift of the gods.
At a pivotal moment—when AI agents are rediscovering and reinforcing the enduring value of Linked Open Data (LOD) and the principles of Linked Data—we are taking another step forward for the community.
We will soon release a new open-source edition of Virtuoso that introduces a feature specifically designed to increase SPARQL compatibility with Wikidata.
I like to think this is due to the single email I sent to my state representative.
https://ostechnix.com/colorado-california-age-verification-law-open-source-exempt/
👥 This isn't just open source for show. Nearly 1M developers told the #Warp team: "If you open this up, we will help you build it." Five years after the initial preview — and with a working business model in place — they finally made it happen. #opensource
Europe builds Microsoft-alternative ‘Euro-Office’ to reclaim digital sovereignty
The open-source initiative promises seamless document compatibility, transparent governance, and reduced dependency on non-European platforms.
https://tech.eu/2026/03/27/europe-bui…
Keine Alterskontrolle für Linux
Gesetze, die eine Altersverifikation in Betriebssystemen vorsehen, nehmen zumindest in Kalifornien und Colorado wohl Open-Source aus.
https://www.heise.de/news/Keine-Alterskont…
Don’t Do Team Meetings
Regular team meetings are often treated as a default part of work. They are seen as a sign of coordination, alignment, and healthy communication. In practice, they often reveal the opposite.
A recurring team meeting where everyone goes around the room to explain what they did last week is usually not a good use of time. It turns communication into a performance instead of a real exchange of useful information. If the team needs a formal meeting just to lear…
Xiaomi open sources MiMo-V2.5 and MiMo-V2.5-Pro under the MIT License, saying both models are among the most efficient available for agentic "claw" tasks (Carl Franzen/VentureBeat)
https://venturebeat.com/ai/open-source…
#superproductivity app is great. There aren't many apps I can run on my locked down computer at work. But this one is possible to sync via webdav so I installed a minimal webdav just to syncronize the json and md file the app generates. It work flawlessly! I have finally found a way to take my todo's between work and home.
Age makes remembering things more and more tr…
Find the Plan 9 booth at @… ! ✨👩💻✨
https://chemnitzer.linux-tage.de/2026/en/programm/beitrag/288 👈🧐
What if we're making the wrong bet about progress?
Just watched someone crack open a million-year-old fossil like it was nothing. Made me think: we open ancient things believing we'll get the most value NOW. Not later.
Same with AI. We're betting progress will speed up AND slow down at the same time.
Weird, right?
New post explores why we value personal forever but trade away our collective future for almost nothing.
Read more: [link]
Fortune: #DeepSeek unveils V4 model, with rock-bottom prices and close integration with Huawei’s chips https://fortune.com/2026/04/24/deepseek-v4-ai-model-price-perfor…
RE: https://dice.camp/@realms/116459545804565917
I'd argue that "AI"-based development creates a bigger attack surface on closed source/proprietary software than open source software:
1. It's more likely that internal software development uses LLMs as they're most affordable to companies; leaving them more vulnerable to prompt injection and other types of attacks targeting LLM use.
2. It's more likely that internal commits aren't vetted as much (or even purely vibe-coded) as ones in open source projects.
3. It's more likely that attacks on open source projects are discovered quicker.
Also a reminder that the "Mythos" thing—like all the other doomerist things coming out of "AI" companies—is a marketing stunt to get Anthropic free press coverage.
I spend a lot of effort on noise reduction. Turning off alerts, reducing the size of (especially redundant) messages I don't really need to see—that kind of stuff.
It's REALLY disruptive when software I use decides to get rid of those filters. Like not even just turning the noise back on, but fully removing my ability to even filter things.
I regularly mourn the wonderful period of time when software worked for us. (This *is* open source, but maintaining a fork is more wo…
Working on extending features for Warlock, and this round of features requires a backend web service running in a centralized, controlled environment due to the requirement of privileged access to partner network resources, (aka, they require an API key and prior authorization to access certain data, thus cannot be distributed in an open source project).
SO, since this is a traditional web service, I opted to use the traditional technologies to power it, but wanted to try out Symfony s…
Open Source in der Verwaltung rechtlich gestärkt
https://www.linux-magazin.de/news/open-source-in-der-verwaltung-rechtlich-gestaerkt/
"Software-Beschaffung für öffentliche Verwaltungsbehörden sind durch die EVB-IT geregelt. Dank aktu…
Are governments properly supporting the digital commons? Many adopt open source software but don't fund the upstream projects that maintain it. This amplifies a "tragedy of the commons" rather than being part of the solution. Governments have historically invented ways to shape the playing field - patents, public universities, copyright, taxes ... They can do it again!
from my link log —
Gecko: a fast GLR parser with automatic syntax error recovery.
https://vnmakarov.github.io/parsing/compilers/c/open-source/2026/04/22/gecko-glr.html
saved 2026-04-23
➡️ Scrapy - Open-source framework for efficient web scraping and data extraction
#bookmarks
«Zum 45. Geburtstag — Microsoft stellt MS-DOS 1.0 als #OpenSource bereit:
Zum 45. Jahrestag des Betriebssystems hat Microsoft den Quellcode der allerersten MS-DOS-Version für den #IBM PC freigegeben. Dieses wurde zum Zeitpunkt seines Erscheinens offiziell noch als 86-DOS 1.00 bezeichnet und
Something else happened, and that was *very* recently. Those reports grew in numbers.
if I see 1-2 valid reports in a major open source lib from an AI tool, I'm not impressed. If I had enough funding, I could find valid vulns in a variety of ways.
When the Mozilla/Antropic thing came out, that was what I was thinking. "Yeah, these are real bugs, but you know, if I had infinite funding like Antropic, and a team of top security people, you know how many bugs I could find in …
On May 26, 2026, at 14:00 UTC, the CrowdStrike Counter Adversary Operations team executed a coordinated takedown of the Glassworm botnet, a global threat targeting software developers through the open-source supply chain.
https://www.crowdstrike.com/en-us/blog/ins…
"From April 24 onward, your interactions with #GitHub #Copilot—including inputs, outputs, code snippets, and associated context—may be used to train and enhance AI models unless you opt out."
-- Github / #Microsoft
The levels of victimhood demonstrated by the "strudel studio" author charging $49 per year for the free/open source @… project, wrapped in their closed source editor plugin and abusing the (unregistered) strudel trademark with zero prior engagement with the community.
At this point if I looked I'd probably find many more similar projects an…
Mistral launches Voxtral TTS, an open-source enterprise text-to-speech model that supports nine languages, including Hindi and Arabic, based on Ministral 3B (Ivan Mehta/TechCrunch)
https://techcrunch.com/2026/03/26/mistral-releases-a-new-open…
We're beyond excited to announce that @suehle, Director of Open Source at SAS and President of the Apache Software Foundation, is joining #bbuzz26 as the keynote speaker!
Learn more on our blog post: https://2026.berlinbuzzwords.de/2026/05/13/ruth-suehle-to-hold-keynote/
For the #ttrpg bubble
Oh, did I even tell you that I've put the scripts I'm using for my TranscriptOMatic #roleplaying session transcription proof-of-concept into a Git repository?
The software presents as a web-based UI that allows users to manage satellite passes, view SDR waterfall data, decode basic signals such as GMSK telemetry, view telemetry packets, synchronize TLEs, manage multiple SDR devices, browse downloaded weather imagery, monitor DSP performance, and interface with antenna rotators.
Unlike tools such as SatDump, which focus primarily …
🧠 Bioengineered neuronal 'circuit board' mimics conditions of the human brain
#brain
This AI Tool Rips Off Open Source Software Without Violating Copyright https://www.404media.co/this-ai-tool-rips-off-open-source-software-without-violating-copyright/
My neurologist advised that I should try EEG Neurofeedback. Unfortunately public health insurance doesn't cover it.
Well, I'm just going to DIY it. I just ordered an open source Neurofeedback device with some electrodes.
https://www.olimex.com/Products/EEG/OpenEE
🇺🇦 #NowPlaying on KEXP's #VarietyMix
Jump Source ft. Loukeman:
🎵 Affect
#JumpSourceftLoukeman
https://jumpsource.bandcamp.com/track/affect-ft-loukeman
https://open.spotify.com/track/2Qd5NnEFHNh1qAeiPenjnu
Cohere launches Transcribe, its first voice model; the 2B-parameter, open-source speech recognition model handles tasks like notetaking and speech analysis (Ivan Mehta/TechCrunch)
https://techcrunch.com/2026/03/26/cohere-launches-a…
{tesseract} allows you to read text from images https://docs.ropensci.org/tesseract/ it can also be combined with {magick} https://ropen…
Working on extending features for Warlock, and this round of features requires a backend web service running in a centralized, controlled environment due to the requirement of privileged access to partner network resources, (aka, they require an API key and prior authorization to access certain data, thus cannot be distributed in an open source project).
SO, since this is a traditional web service, I opted to use the traditional technologies to power it, but wanted to try out Symfony s…
Pro tip: bookmarking https://www.tind.io/ is an effective way to let Firefox autocomplete accidentally bring you to a safe space when you're at risk of visiting a dangerous domain a few letters longer.
An Open Letter to Georgetown Students, In Response to Recent Announcements by the University about “Generative AI”
https://medium.com/center-on-privacy-technology/an-open-letter-to-geor…
Trump keeps escalating his war against Iran. Sets deadline on Monday, shortly before midnight CET. https://www.cbc.ca/news/world/iran-nuclear-facility-fourth-week-us-troops-9.7137298?utm_source=flipboard&utm_me…
I just published The Open Contributions Descriptor format as an IETF Internet-Draft.
#opensource #opendata #openstandard
#Zürich hat geprüft, ob #OpenDesk #Microsoft365 in der Verwaltung ersetzen kann.
Das Ergebnis: Für viele Büroaufgaben reicht die Open-Source-Lösung bereits aus, etwa bei Mail, Kalender, …
#прыщинг @…
https://arxiv.org/abs/2510.15082 недорогой фотолитографический агрега…
At a pivotal moment—when AI agents are rediscovering and reinforcing the enduring value of Linked Open Data (LOD) and the principles of Linked Data—we are taking another step forward for the community.
We will soon release a new open-source edition of Virtuoso that introduces a feature specifically designed to increase SPARQL compatibility with Wikidata.
from my link log —
Open access to standards documents.
https://discourse.llvm.org/t/rfc-open-access-to-standards-documents/90856
saved 2026-05-21
OpenAI releases a set of prompts designed to be used with its open-weight safety model gpt-oss-safeguard that lets developers make their apps safer for teens (Amanda Silberling/TechCrunch)
https://techcrunch.com/2026/03/24/openai-adds…
Open Slopware
“Free/Open Source Software tainted by LLM developers/developed by genAI boosters, along with alternatives.”
#AI
The Irish Council for Civil Liberties (#ICCL) has released an open source tool designed to reduce LLM hallucinations.
If my 15-year-old PC had a GPU I'd be tempted to give it a try.
https://www.
from my link log —
Developing a minimally HashDoS resistant, yet quickly reversible integer hash for V8.
https://nodejs.org/en/blog/vulnerability/march-2026-hashdos
saved 2026-03-26
Some organizations are doing panicky things over Mythos.
NHS Goes To War Against Open Source
https://shkspr.mobi/blog/2026/05/nhs-goes-to-war-against-open-source/
«#Zürich will sich von teurer #Microsoft-Software lösen – doch da gibt es ein Problem:
Die Zürcher Stadtverwaltung soll sich aus dem #M365-Würgegriff lösen und auf eine europäische
It feels like the open source world is fracturing. It used to be if we wanted alternatives to commercial software we could look to open source, but so much of open source software today is using AI.
Sure, some maintainers are saying "I only use it to speed things up, I still review all code before it gets added." but for lots of folks that's not good enough, and they draw a hard line at the use of any AI.
Are we looking at "open source" versus "open …
How tech companies are using open source initiatives to achieve critical strategic goals and how such efforts are reshaping industries like AI, AVs, and more (Bill Gurley/Bill's Substack)
https://p3institute.substack.com/p/from-open-source-software-to-open…
Noch ein paar der zuletzt hier besonders häufig geteilten #News:
Münchens IT-Wende: Open Source ist für die neue Koalition der Normalfall
from my link log —
Verilator: open-source SystemVerilog simulator and lint system.
https://github.com/verilator/verilator
saved 2026-03-20 https://
Microsoft has locked the lead developers of two prominent open source security projects out of their accounts.
https://www.computing.co.uk/news/2026/microsoft-locks-open-so…
Meta: Neue KI-Modelle sollen teils Open-Source werden
Meta plant, neue KI-Modelle zu veröffentlichen. Die sollen in Teilen unter Open-Source-Lizenzen herausgegeben werden.
https://www.heis…
Datacurve releases the DeepSWE coding benchmark, a 113-task test across 91 open-source repositories and five languages, and says GPT-5.5 is the leader at 70% (Michael Nuñez/VentureBeat)
https://venturebeat.com/technology/dee…
Open source registries don't have enough money to implement basic security: Free beer is great. Securing the keg costs money.
Open source registries are in financial peril, a co-founder of an open source security foundation warned after inspecting their books. And it's not just the bandwidth costs that are killing them.
🫴
After EV maker Fisker's collapse, ~4,000 car owners formed a nonprofit to keep their cars working by reverse-engineering software and building open-source tools (Fred Lambert/Electrek)
https://electrek.co/2026/05/16/fisker-ocean-open-source-ev-story-aft…
Cal.com, which provides scheduling software, is moving its core open-source codebase to a closed repository, citing the dangers of AI hacking its open code (Steven Vaughan-Nichols/ZDNET)
https://www.zdnet.com/article/ai-security-worries-force-company-t…
Moonshot introduces Kimi K2.6, an open-weight model that it says shows strong improvements in long-horizon coding tasks, available under a modified MIT License (Kimi AI)
https://www.kimi.com/blog/kimi-k2-6
As the US House probes Airbnb's use of Chinese AI models, CEO Brian Chesky says the company is not sharing data with Chinese firms and uses open-source models (Natalie Lung/Bloomberg)
https://www.bloomberg.com/news/articles/20
OpenDesk kann vieles, aber halt nicht alles. Das ist das Fazit einer Studie aus Zürich, die die Open-Source-Lösung als Microsoft 365-Alternative unter die Lupe genommen hat. 🔍
Zum Artikel: https://heise.de/-11303065?wt_mc=sm.red.…
Sources: Nvidia is pitching NemoClaw, an upcoming open-source AI agent platform for enterprises, and plans to offer security and privacy tools for it (Wired)
https://www.wired.com/story/nvidia-planning-ai-agent-platform-launch-open-source/
Nvidia debuts Nemotron 3 Super, a 120B-parameter hybrid MoE open-weight model; filing: Nvidia plans to spend $26B over the next five years to build open models (Will Knight/Wired)
https://www.wired.com/story/nvidia-investing-26-billion-open-source-models/…
Einige der zuletzt hier besonders häufig geteilten #News:
OpenReception 1.0: Open-Source-Terminverwaltung für Arztpraxen ist fertig
Noch ein paar der zuletzt hier besonders häufig geteilten #News:
OpenReception 1.0: Open-Source-Terminverwaltung für Arztpraxen ist fertig
Sources: Meta is preparing to release the first AI models developed under Alexandr Wang, with plans to offer versions of those models via an open source license (Ina Fried/Axios)
https://www.axios.com/2026/04/06/meta-open-source-ai-models
Noch ein paar der zuletzt hier besonders häufig geteilten #News:
OpenReception 1.0: Open-Source-Terminverwaltung für Arztpraxen ist fertig