How does an operating system that isn’t proprietary or powered by the Linux kernel manage to run Docker, you ask? Well, it would need features like namespaces and cgroups. That’s exactly what Vinix did, adding its own implementations of those plus overlayfs
Read More

Since 2022, Google’s Open Source Software Vulnerability Reward Program (OSS VRP) has been the path for outside researchers to get paid for reporting security flaws in the company’s open source code, including projects like Flutter, Angular, Go, and Fuchsia. With an announcement
Read More

Lightwell is Red Hat and IBM’s response to a specific problem in enterprise open source security. Vulnerabilities sit in production library versions that upstream maintainers haven’t patched and, in some cases, won’t. More than 90% of enterprise application code traces back to
Read More

The globally recognized tech and engineering company has quietly shut down the OpenRadioss project at the start of this month, keeping the GitHub page around but completely removing the repository. I sound complainy because usually when an open project is discontinued, the
Read More

You already know that Canonical has been selectively replacing Ubuntu’s C-based system components with Rust-written equivalents that don’t compromise in terms of functionality, most of the time. Now it looks like the distro’s OpenPGP implementation is next, with Sequoia PGP coming preinstalled
Read More

Canonical is moving Ubuntu’s kernel update cycle from four weeks to two, with the expected result being a kernel release landing every week due to cycle overlap. They did this because AI-assisted vulnerability hunting is causing CVEs to land faster than the
Read More

yt-dlp has over 195,000 stars on GitHub, supports thousands of platforms, and is actively maintained by a global developer community. Unfortunately, the IFPI would like to see it on the EU’s piracy watchlist. Just so you know, the International Federation of the
Read More