TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

The threat to open source comes from within

15 点作者 forrestbrazeal大约 1 年前

3 条评论

jqpabc123大约 1 年前
The outside threat was actually perpetrated from the inside.<p>There was no due diligence done on the new administrator.<p>The assumption was made that anyone looking to associate themselves with the project had good intentions. Clearly this was an unfounded assumption --- one that could easily apply in other cases as well.
评论 #39980597 未加载
gradientsrneat大约 1 年前
The article contains a rehashing of the xz attack, but also contains a discussion of for-profit open source&#x2F;source available software.<p>The argument in the article, that there are greater threats to FOSS than security vulnerabilities, is reasonable.<p>I&#x27;d add that some large software companies have an incentive to make security vulnerabilities seem as scary as possible, because it makes them seem like they are doing important work. Seems like a viable approach to lobbying for laws that could lead to excess regulatory capture.
hbogert大约 1 年前
Kinda tired that redis, the company, is seen as the creators of redis and that they are in their right to fight the big Bad hyperscalars. The irony is, redis the company would not have existed in the first place with their current license choice, because they, Garantia data, started out as a third party.<p>This is contrast to elastic and mongodb.