Sign in

fnord

@fnrd.toots.nu.ap.brid.gy
3 followers 4 following 73 posts

information science, #FLOSS, & Ranganathan's Five Laws Formerly from Fosstodon, left because of libertarianism. [bridged from toots.nu/@fnrd on the fediverse by fed.brid.gy ]

PostsRepliesMedia
fnord @fnrd.toots.nu.ap.brid.gy · 26/09/2026
Best thing I heard this week: Don't think of technology as technology: think of it as democracy and you start seeing what's wrong with tech.
101
Reposted by fnord
Tomáš @prahou.merveilles.town.ap.brid.gy · 26/09/2026
Creatures: Phone Bad Book Good #creatures #phone_bad_book_good #comic
Chid explores a museum. He comes across a large painting of Mister Mobilek. He climbs into the painting. Mister mobilek eats his head.
023
Reposted by fnord
Frida Hylander @fridahylander.bsky.social · 06/09/2026
Skriver om valet, om att inget är avgjort och att verkligheten trots allt pågår bortanför det politiska spelet. Oavsett hur det går så fortsätter jobbet.
supermiljobloggen.se
Frida Hylander: Prata om vad som står på spel!
VALET & KVALET:: Det är naturligt att vara orolig inför ett val där mycket står på spel. Men använd den sista veckan till att prata med dina medmänniskor om vad som är viktigt för dig, och uppmana dem...
06524
fnord @fnrd.toots.nu.ap.brid.gy · 05/09/2026
... wow, so, Apple has about 2500 engineers in (amongst others) the Occupied fucking Territories in Israel, and they even designed the 5G / Bluetooth / Wifi chip that's in most of the iPhone 17 line and beyond. That's just great. I get why they're doing it, it's great to have this knowledge on […]
toots.nu
Original post on toots.nu
000
fnord @fnrd.toots.nu.ap.brid.gy · 05/09/2026
#USpol See, Hegseth called himself War, RFK jr. is really acing that Pestilence thing, Musk certainly did his thing to be Famine, and Trump is Death for many involved. The 4 embarrassing horseboys of the Crapocolypse.
000
fnord @fnrd.toots.nu.ap.brid.gy · 02/09/2026
If Rufus Wainwright hadn't written Going To A Town then I would have no words to help out these past few years... "I'm so tired of you America ... I've got a life to lead, I've got a soul to feed." "Making my own way home, ain't gonna be alone - I've got a life to lead, America." #RufusWainwright
000
Reposted by fnord
Brennan Kenneth Brown 👻 BOO! @brennan.social.lol.ap.brid.gy · 01/09/2026
Normalized Fascism in Open Source: $12 Million Given to DHH brennan.day/normalized-fascism-in-o… #politics #technology #opensource #foss #programming
brennan.day
Normalized Fascism in Open Source: $12 Million Given to DHH
I'm somebody who's written rather extensively on generative AI ethics, and I feel there is a lot that is unethical about the current corporate climate and culture surrounding the technology. And when I write about LLMs and chatbots, I'm careful not to make judgments about the people using the end products—I don't think you're a bad person if you use ChatGPT or Claude, or whatever. What I'm discussing today is different. There is no room for debate or argument, here—only hard, absolute lines in the sand. Much of the world has become far too complacent and complicit with people (and their companies) who proclaim and hold far-right, fascist ideology. These are not image boards residing in the fringe corners of an anonymous Internet made up of people who have slipped through the cracks. No, these are wealthy people in power who are blatant and shameless in their support for those who continuously beat the drum of bigotry, xenophobia, transphobia, and cynical accelerationist hatred. Open source technology has become a culture safe for this rhetoric and ideology, with millions of dollars being invested to continue this status quo. You need to be made aware of this, and then you need to be vocal and take action. ## DHH David Heinemeier Hansson is the most well-known figurehead here. He is the creator of Ruby on Rails, CTO of 37signals, and a Shopify board member. In September 2025, DHH published "As I remember London", mourning that London is "no longer full of native Brits"—a claim that redefines "native Brit" to mean "white." Developer Jake Lazaroff details how DHH describes a Tommy Robinson march as "heartwarming," where speakers called for "remigration" (a euphemism for the ethnic cleansing of non-white residents) and one speaker demanded that countries "ban halal," "ban mosques," and "ban temples." DHH invokes abuse scandals to bolster his white-nationalist rhetoric, framing non-white men as predators of "British girls," while UK data shows no such racial skew. LibreNews reaches the same conclusion. Developer Joel Drapper wrote how Ruby Central had lost a $250,000-a-year sponsorship from Sidekiq after giving DHH a speaking slot at RailsConf a few weeks later, leaving the nonprofit financially dependent on Shopify (where DHH sits on the board); Shopify then pushed Ruby Central to consolidate control rather than lose its funding. The Register and Heise both covered the fallout. But none of this has cost DHH money—if anything, he's only gained. A few weeks ago, DHH announced the Omacom Foundation to bankroll his Linux distribution, Omarchy, which is nothing more than a few vibecoded scripts on top of Arch Linux. There are twelve "Founding Patrons" pledging a million dollars apiece: * Tobi Lütke, CEO of Shopify * Patrick Collison, CEO of Stripe * Michael Dell, Chairman and CEO of Dell Technologies * Jack Dorsey, Block Head and Chairman of Block * Matthew Prince, CEO of Cloudflare * Brendan Iribe, Cofounder of Sesame and Oculus * Jason Fried, CEO of 37signals * Drew Houston, cofounder and co-CEO of Dropbox * Peter Steinberger, creator of OpenClaw * Brian Armstrong, CEO of Coinbase * Yunjie Dai, cofounder of TapTap * DHH himself. And these corporations are each contributing $100,000 a year for three years: * 1Password * 37signals A dozen of the most powerful executives in tech looked at a man who wrote that a British march calling for the deportation of non-white citizens was "heartwarming," and decided he was the person they wanted to hand a multimillion-dollar foundation to. I should also mention that the same infrastructure companies bankrolling Omarchy and Ladybird are also the backbone of the ongoing violence of U.S. deportations. This includes Amazon's AWS contracts powering ICE, Palantir building ICE's case-management system, and the use of Salesforce's tools. ## "Apolitical" Andreas Kling, founder of the Ladybird browser project (itself an Omacom-adjacent beneficiary, sponsored by Cloudflare, FUTO, Shopify, 37signals, Proton, and JetBrains), built his project's identity around refusing a documentation patch that would have made SerenityOS's manuals gender-neutral, on the grounds that gender-neutral language was "personal politics" that didn't belong in a technical project. Blogger Kate Vibber wrote how that became Ladybird's official contributing guidelines, which now bar "discussions on societal politics" outright—a policy treating the mere existence of trans contributors as more "political" than excluding them. In 2026, Kling posted in support of Charlie Kirk after Kirk's assassination and, per discussion on Lobsters, bristled at being called a fascist for it—a reaction hard to square with "apolitical," since Kirk was a movement figure who, per his own Wikipedia entry, promoted the "white genocide" conspiracy theory and criticized the Civil Rights Act. Vaxry, the developer behind the Hyprland Wayland compositor (another Omacom-funded project), was banned in 2024 by Freedesktop.org's Code of Conduct team over a pattern of the Hyprland Discord enabling harassment of trans community members, including an incident where moderators changed a trans user's display name to strip their pronouns. Vaxry's own public response framed the ban as ideological overreach by "social justice warriors," while the Freedesktop side, recounted at LibreNews, describes over a year of private attempts to get him to address the toxicity before going public. Hyprland's contributing guidelines now ban "political" speech too. Enrico "metux" Weigelt forked the deprecated Xorg server into Xlibre as a rebellion against a "RedHat DEI" conspiracy he believes exists. The founding document of the project was a rant about big-tech diversity initiatives, and its code of conduct is a text file that just says "404." FUTO is a funder of Immich and is run by Eron Wolf, a friend and platformer of Curtis Yarvin, the "dark enlightenment" writer whose ideas about dismantling democracy have now found purchase in the current U.S. administration. Brendan Eich, Mozilla's co-founder and now Brave's CEO, used Brave's infrastructure to give payments to Kiwi Farms, a forum whose harassment campaigns have been linked to multiple suicides. We witness the same pattern over and over. A tech project is declared "apolitical," and defines any accommodation of marginalized contributors as a political act, and keeps the actual politics of the maintainers—nostalgia for ethnically white homogeneous cities and hostility to gender-neutral pronouns—off the table entirely. Because that's just, you know, how they feel. "Apolitical" has never meant a lack of politics. It's meant politics that current power doesn't have to defend. ## The Throughline We have been watching the fragile fury of white masculinity and hate metastasize and fester over the years, from Gamergate's harassment campaigns through years of anti-SJW cringe compilation content mills, the marking of Antifa as the enemy, the tantrum-throwing #AllLivesMatter movement, and the manufactured panic over DEI and "wokeism." You are not living in the neoliberal-Obama era where basic compassion and empathy are the default anymore. And you haven't been for a long time. Despite their cries about censorship and deplatforming, and despite their persecution fetish, these people are not on the fringe. They have board seats and sponsorships and multimillion-dollar foundations. It is no coincidence this is occuring as companies and brands return to X, as the United States votes at a Midterm election being interfered with by a sitting president, as conservatives normalize the far-right in Europe politics and culture. If you want a more thorough and longer list of people, companies, and products, then I recommend reading up on Devine Lu Linvega's Fashware list on Sourcehut, as well as Drew DeVault's list of Weird Little Guys. You may be in a position where the specific harms and rhetoric being spewed are not aimed at you, and you may have been coaxed into viewing what I'm saying here as overreaction, or as a rabid, self-righteous screed. Millions of dollars have been spent to ensure this, and it could not be further from the truth. We cannot afford to continue to shrug off the presence of these people and their projects in open source. A united stand must be taken. **Speak up on this**. Boycott aggressively. Let people know you don't support Cloudflare, Shopify, 37signals, Dell, 1Password, Framework, Block, Coinbase, Dropbox, TapTap, and any other company enabling the spread of dangerous and harmful political ideologies that will continue to result in further violence and death. And let people know the harm these companies are actively doing. We cannot allow this to continue; we must be far more proactive and assertive in our fight against the normalization of fascism and the far right. We must be willing to sacrifice ease and convenience, and we must be willing to sever all connections with these entities. It is our only way forward.
2649
fnord @fnrd.toots.nu.ap.brid.gy · 02/09/2026
So I was refreshing my knowledge about the Swedish vote and holy crap: DuckAI gave unasked for and wrong voting advice 🫣 NO, you don't need to be a citizen to vote, you just need to live in Sweden, have ID they will accept, and be at least 18 years of age. You will […] [Original post on toots.nu]
A screenshot of DuckAI. The screenshot says that to vote in Sweden, you must meet the following 3 criteria: Be a Swedish citizen, be at least 18 years old on election day AND be or have been registered as a resident in Sweden. This is obviously not correct.
000
fnord @fnrd.toots.nu.ap.brid.gy · 24/08/2026
Nothing quite like what we dreamed of in 2001 - and what we got because of clever but morally deficient ad companies. #Swedish #IllustreradVetenskap
page 47 from the Swedish version of Illustrated Science.
 Illustrerad Vetenskap nr. 16, 2001, an article named "Välkommen till det digitala hemmet" In the screenshot specifically are descriptions of future kitchens and gardens in Swedish.
000
Reposted by fnord
Jens Ljungkvist @jensljungkvist.se · 01/08/2026
Jag är så trött på svenska politiker och samtidigt förfärad över ur sittande regering med statsminister uttrycker sig. www.svt.se/nyheter/inrikes/kristers… Istället för att inse det otroligt tragiska som händer på plats i Marocko och stötta […]
toots.nu
Original post on toots.nu
001
Reposted by fnord
Open Risk @openrisk.mastodon.social.ap.brid.gy · 04/08/2026
RE: social.ftm.nl/@EricChrSmit/11703625… #BigTech is an aberration and it is important to see it as that, rather than accepting "this is just how things are". Even in the context of our flawed democracies and economic systems the historically unprecedented concentration of […]
mastodon.social
Original post on mastodon.social
002
Reposted by fnord
Uckermark MacGyver :nonazi: @maxheadroom.hub.uckermark.social.ap.brid.gy · 04/08/2026
Linux is running large advertising campaigns now in Berlin #diday #dutgemacht #linux
A glowing digital display shows an error log from a system journal, listing multiple instances of "Failed to write entry" with details about byte sizes and item counts. The scene is set at night, with a visible city backdrop and foliage.
41036
fnord @fnrd.toots.nu.ap.brid.gy · 03/08/2026
I have come to the sad conclusion that WorldCat (after getting scraped by genAI companies and slammed by annasarchive, no thanks for that asshole behaviour) is not easily usable for people anymore. You need an account, and you can't work too fast or you'll get botchecked. Sigh. Another commons […]
toots.nu
Original post on toots.nu
101
Reposted by fnord
Simon Phipps @meshed.cloud · 27/07/2026
The @EUCommission has just published guidance documents clarifying how the Cyber Resilience Act #CRA affects (among other things) #OpenSource. This is the result of the extensive engagement of many open source community members […]
meshed.cloud
Original post on meshed.cloud
118
Reposted by fnord
Eliot Higgins @eliothiggins.bsky.social · 27/07/2026
There's a lot of focus on democratic resilience from civil society actors at the moment, and rightly so, but I'm concerned there's not really a shared definition of what democratic resilience is, and often appears to fall back on a few ideas that I think are questionable.
612832
Reposted by fnord
Jess👾 @jesstheunstill.infosec.exchange.ap.brid.gy · 25/07/2026
Just imagine if we'd invested over a trillion dollars in green energy rather than AI.
10105210
fnord @fnrd.toots.nu.ap.brid.gy · 25/07/2026
Glöm inte att det alltid finns mer information än vi ser på internet i våra ekokammare. Det finns annonser på Facebook vi inte ser, på busshållplatser innanför skolor, och i regionernas lokala tidningen. Visste ni att Jimmy Åkesson skryter med att han redan är […] [Original post on toots.nu]
Bilden visar en del av en annons i Corren och misinformerar folk att Jimmy Åkesson är Sveriges nästa statsminister.
000
fnord @fnrd.toots.nu.ap.brid.gy · 21/07/2026
I know this is only relevant to people who catalogue books but I'm really wondering if it's OK to not mention AI generated metadata if there's been a human in the loop. What's wrong with "AI generated and checked by a human tag" there? […]
toots.nu
Original post on toots.nu
000
fnord @fnrd.toots.nu.ap.brid.gy · 18/07/2026
The current alt-right US government has gone after the support libraries give to everyone. I see them stepping up the fascism by trying to stop funding broadband for libraries and schools: action.ala.org/campaign/saveourerate And worse, a bill that will put the choice of books for kids […]
toots.nu
Original post on toots.nu
002
fnord @fnrd.toots.nu.ap.brid.gy · 17/07/2026
Yes, #Reuters together with #APnews are indispensable sources in the morass of misinformation. But let's not forget that the other arm of Canadian #ThomsonReuters enables dangerous #ICE agents to do their foul work better. #ICE wants "data that can identify “unaccompanied minors”' and well, who […]
toots.nu
Original post on toots.nu
000
Reposted by fnord
Skalman @owallstromer.bsky.social · 15/07/2026
The first rule of being the Swedish National Security Advisor is that you shall not misplace any documents. The second rule of being the Swedish National Security Adv- actually we don't know what the second rule is because no one makes it past the first one.
11910
fnord @fnrd.toots.nu.ap.brid.gy · 13/07/2026
Seriously considering to tell people to STFU about LLMs unless they understand RegExp. #RigorousGatekeepingForBetterSummer
000
Reposted by fnord
Prof. Sam Lawler @sundogplanets.mastodon.social.ap.brid.gy · 10/07/2026
Want some reminders of how fucking terrible this idea is? bigthink.com/starts-with-a-bang/tru… theconversation.com/a-us-startup-pl… […]
mastodon.social
Original post on mastodon.social
148108
fnord @fnrd.toots.nu.ap.brid.gy · 09/07/2026
Been taking in the voting on ChatControl, it has been interesting to see how people voted on Tuesday and today. In any case well done to everyone who got involved and helped out! A lot of countries seem to have flipped, see the map left Tuesday and right Thursday […] [Original post on toots.nu]
Two maps side by side. On the left the result of the EU Parliament vote on ChatControl Tuesday. On the right the result of the EU Parliament vote on ChatControl on Thursday.
000
Reposted by fnord
Patrick Breyer @echo-pbreyer.digitalcourage.social.ap.brid.gy · 09/07/2026
🇪🇺 The European Parliament lets #ChatControl 1.0 go through despite a majority voting against it (314:276) – allowing mass scanning of private chats until 2028. Survivors are warning. My analysis and why this is the wrong approach 👇 […]
digitalcourage.social
Original post on digitalcourage.social
73985
fnord @fnrd.toots.nu.ap.brid.gy · 09/07/2026
A bit after 12:00 today (between 12:00 and 14:00) the EU Parliament will vote on ChatControl 1.0 or as they will vote on it: Regulation (EU) 2021/1232. They name it as "Temporary derogation from certain provisions of the ePrivacy Directive to combat online child sexual abuse" but what we're […]
toots.nu
Original post on toots.nu
001
Reposted by fnord
Sus Andersson @suswandersson.mastodon.nu.ap.brid.gy · 08/07/2026
RE: digitalcourage.social/@echo_pbreyer… Minst 30 EU-parlamentariker behöver ändra åsikt till imorgon för att stoppa #Chatcontrol . Behövs 361 röster, nu är det 331. Ring, skriv - påverka! Nu! fightchatcontrol.eu/#contact-tool Skrolla ner på sidan för att se […]
mastodon.nu
Original post on mastodon.nu
227
Reposted by fnord
Patrick Breyer @echo-pbreyer.digitalcourage.social.ap.brid.gy · 08/07/2026
🇪🇺Tomorrow 12:00 PM: Final vote on reinstating #ChatControl 1.0 A simple majority is no longer enough for rejection. 📩 New email template: fightchatcontrol.eu 📞 Even better: Call directly 📰 Info: heise.de/-11356680
fightchatcontrol.eu
Fight Chat Control - Protect Digital Privacy in the EU
Learn about the EU Chat Control proposal and contact your representatives to protect digital privacy and encryption.
12330
Reposted by fnord
Eliot Higgins @eliothiggins.bsky.social · 08/07/2026
A fresh batch of Russian fake news posts today focused on the German elections, again targeting political parties to the left of the AfD. You'll note the very similar numbers of likes, reposts, and views as the pervious batch, all from commercial bot networks.
110236
fnord @fnrd.toots.nu.ap.brid.gy · 08/07/2026
Yesterday, EU members of parliament didn't manage to prevent ChatControl to possibly be voted in this Thursday. You have today to let yourself be heard, hopefully it can be defeated if we all reach out to more MEPs through fightchatcontrol.eu After that? […] [Original post on toots.nu]
000
fnord @fnrd.toots.nu.ap.brid.gy · 06/06/2026
#Nationaldag 2026 kan dra åt helvete. #Tidöpartierna gjorde att nya reglar för svenskt medborgarskap gäller från idag. #Moderaterna och andra partier utnyttjar en dag för alla medborgare till att snacka skit om ointegrerad folk på Facebook. Helt värdelöst […] [Original post on toots.nu]
000
Reposted by fnord
Frida Hylander @fridahylander.bsky.social · 03/06/2026
Människor med ryggrad är det viktigaste vi har i tider som dessa.
213730
Reposted by fnord
Pottery by Osa @potterybyosa.mastodon.social.ap.brid.gy · 02/06/2026
It’s not really hot tea season anymore but I felt like practicing my #teapot making skills—and yes, I still consider it practice. I’m always tweaking the design. With this iteration, I thickened the handle for comfort & durability, as I’ve been doing with my […] [Original post on mastodon.social]
A handcrafted clay teapot with intricate geometric patterns and a decorative lid sits on a wooden shelf. The teapot features a curved handle and a spout, both with subtle surface texture. The teapot is at the leather-hard stage—a rich brown color. It has not been fired.
1232
Reposted by fnord
Felicitas Pojtinger 🌅 @pojntfx.mastodon.social.ap.brid.gy · 29/05/2026
github.com/robinostlund/homeassista… There needs to be a law that makes remote attestation - no matter who provides the root certificates, Google/Apple/GrapheneOS - illegal. There is only one use for this technology right now, and it is to prevent people […]
mastodon.social
Original post on mastodon.social
2527
Reposted by fnord
Eliot Higgins @eliothiggins.bsky.social · 28/05/2026
But this also tells us something fundamental about how we need to approach counter-disinformation efforts. It's not about getting rid of the supply of bad information or fact-checking it out of existence, instead we need to focus on why there's a demand for it in the first place.
313228
fnord @fnrd.toots.nu.ap.brid.gy · 27/05/2026
I honestly hope every wellthinking UK company, small and large, will support trans people by making their toilets accessible to all genders. If you don't want the botheration of removing a gender sign, just add the other gender! It's the easiest thing. New toilet? Just add a🚽sign and a tiny bin […]
toots.nu
Original post on toots.nu
000
Reposted by fnord
John Mark Ockerbloom @jmarkockerbloom.mastodon.social.ap.brid.gy · 26/05/2026
From the article in the LB: "In ten days last month, the Wikimedia Foundation fired the longtime lead developer of MediaWiki and disbanded the team whose entire job was to listen to volunteers. Most of the people they fired were union organizers. Wikipedia’s editors are now threatening to strike […]
mastodon.social
Original post on mastodon.social
0128
Reposted by fnord
George Monbiot @georgemonbiot.bsky.social · 27/05/2026
How do you turn people off the green transition and deliver them to the far right? Through #ClimateAuthoritarianism. The government seeks to coerce, not to persuade. And it's turning a planning system based on consent into one based on decree. This week's column.🧵 www.theguardian.com/commentisfre...
theguardian.com
Britain’s green transition should belong to everyone. Why is Labour so intent on stopping us having our say? | George Monbiot
Tearing up planning and using protest laws to criminalise local people – this isn’t how to build the broad consent needed, says the Guardian columnist George Monbiot
23506207
fnord @fnrd.toots.nu.ap.brid.gy · 27/05/2026
@wikimediafoundation Does your management have any comment about firing people who are part of a union? Not to mention the entire team who manage the volunteers (and thus do a lot for quality control)? medium.com/@jakeorlowitz/wikipedia-… A woman […]
toots.nu
Original post on toots.nu
000
fnord @fnrd.toots.nu.ap.brid.gy · 22/05/2026
"Justitieutskottet föreslår att riksdagen säger ja till regeringens förslag att ge Polismyndigheten möjlighet att få använda AI-teknik för ansiktsigenkänning i realtid" Var i helvete ska alla våra personuppgifter hamna, i USA igen? […]
toots.nu
Original post on toots.nu
000
Reposted by fnord
padeluun ⁂ @padeluun.digitalcourage.social.ap.brid.gy · 20/05/2026
Diese - mit öffentlich-rechtlichem Geld finanzierten - Broschüren zum „Journalismus ins Fediverse“ durften auf der @republica nicht auf dem Gemeinschaftsstand von #ARDund @ZDF ausgelegt werden – wohl weil die SocialMedia-Abteilung lieber weiter […] [Original post on digitalcourage.social]
Das Bild zeigt mehrere frisch gedruckte Broschüren mit dem Titel „REINVENT SOCIAL PLATFORMS“. Auf dem Cover ist eine Hand zu sehen, die ein Smartphone hält, aus dem Blumen und Pflanzen herauswachsen. Rund um eine große Blüte verlaufen neonartige pinke Strahlen. Der Hintergrund ist blau-violett mit angedeuteten Rasterlinien.

Oben rechts steht der Slogan „Journalismus into the Fediverse!“. Unten sind die Logos von „Media Lab Bayern“ und „SWR X Lab“ zu sehen.

Im Hintergrund liegen weitere Flyer und Broschüren, darunter Materialien zu den BigBrotherAwards. Die Szene wirkt wie ein Infotisch auf einer Veranstaltung oder Messe – vermutlich im Umfeld von Netzpolitik, Medieninnovation oder Fediverse-Themen.
001
Reposted by fnord
BSides Ume @bsidesume.social.accum.se.ap.brid.gy · 20/05/2026
RE: mastodon.social/@bagder/11659971394… Unfortunately Daniel Stenberg's talk on how to manage a critical open source infrastructure under the AI-accelerated deluge of vulnerability reports turned into a practical demonstration of how to do it, and we hope to announce a new […]
social.accum.se
Original post on social.accum.se
139
Reposted by fnord
Carole Cadwalladr @carolecadwalla.bsky.social · 15/03/2026
The billionaires are not coming to save us. We're building a new news organisation from scratch supported by reader funding. We'd love you to be part of it. Your membership subscriptions enable us to do this kind of reporting. 🙏 www.thenerve.news/membership
thenerve.news
membership | The Nerve
Fearless, independent journalism on culture, politics and tech
5486169
fnord @fnrd.toots.nu.ap.brid.gy · 18/05/2026
The #MatPlotLib maintainer vs vague #OpenClaw bot(?) makes my blood pressure rise. Why this sort of behaviour specifically? Because it was about 4 years ago that I started warning technical experts at my job about how the irresponsible release of AI software would soon waste their time. And […]
toots.nu
Original post on toots.nu
000
Reposted by fnord
Jonathan Mosen @jonathanmosen.caneandable.social.ap.brid.gy · 28/04/2026
RE: dragonscave.space/@J_D_X/1164702686… This is very well said. Blind mentors are important, because we are so often held back by low expectations. We can be lifted up by those who’ve blazed a trail ahead of us. As for Gary, he is an absolute legend who I am honored to call a […]
caneandable.social
Original post on caneandable.social
002
fnord @fnrd.toots.nu.ap.brid.gy · 28/04/2026
What the hell, why not throw a book recommendation out there because even sensible people are pushed into implementing AI these days. Beyond any tech implementation it is so important to: prevent human suffering. Use tools, like the Rapid Ethical Deliberation Canvas, to make teams and management […]
toots.nu
Original post on toots.nu
010
Reposted by fnord
daniel:// stenberg:// @bagder.mastodon.social.ap.brid.gy · 22/04/2026
High-Quality chaos. This is where we're at right now, security reporting wise. daniel.haxx.se/blog/2026/04/22/high…
daniel.haxx.se
High-Quality Chaos
As I have been preparing slides for my coming talk at foss-north on April 28, 2026 I figured I could take the opportunity and share a glimpse of the current reality here on my blog. The _high quality chaos_ era, as I call it. ## No more AI slop I complained and I complained about the high frequency junk submissions to the curl bug-bounty that grew really intense during 2025 and early 2026. To the degree that we shut it down completely on February 1st this year. At the time we speculated if that would be sufficient or if the flood would go on. Now we know. ## Higher volume, higher quality In March 2026, the curl project went back to Hackerone again once we had figured out that GitHub was not good enough. From that day, the nature of the security report submissions have changed. The slop situation is not a problem anymore. **AI slop rate** The report frequency is higher than ever. Recently it’s been about double the rate we had through 2025, which already was more than double from previous years. **Number of hours between security reports** The quality is higher. The rate of confirmed vulnerabilities is back to and even surpassing the 2024 pre-AI level, meaning somewhere in the 15-16% range. **Confirmed vulnerability rate** In addition to that, the share of reports that identify a bug, meaning that they aren’t vulnerabilities but still some kind of problem, is significantly higher than before. **Share of reports that were bugs, not vulnerabilities** ## Everything is AI now Almost every security report now uses AI to various degrees. You can tell by the way they are worded, how the report is phrased and also by the fact that they now easily get very detailed duplicates in ways that can’t be done had they been written by humans. The difference now compared to before however, is that they are mostly very high quality. The reporters rarely mention exactly which AI tool or model they used (and really, we don’t care), but the evidence is strong that they used such help. ## We are not unique I did a quick unscientific poll on Mastodon to see if other Open Source projects see the same trends and man, do they! Friends from the following projects confirmed that they too see this trend. Of course the exact numbers and volumes vary, but it shows its not unique to any specific project. Apache httpd, BIND, curl, Django, Elasticsearch Python client, Firefox, git, glibc, GnuTLS, GStreamer, Haproxy, Immich, libssh, libtiff, Linux kernel, OpenLDAP, PowerDNS, python, Prometheus, Ruby, Sequoia PGP, strongSwan, Temporal, Unbound, urllib3, Vikunja, Wireshark, wolfSSL, … I bet this list of project is just a random selection that just happened to see my question. You will find many more experiencing and confirming this reality view. ## An explosion When we ship curl 8.20.0 in the middle of next week – end of April 2026, we expect to announce at least six new vulnerabilities. Assuming that the trend keeps up for at least the rest of the year, and I think that is a fair assumption, we are looking at an estimated explosion and a record amount of CVEs to be published by the curl project this year. We might publish closer to 50 curl vulnerabilities. **Number of published vulnerabilities** Given this universal trend, I cannot see how this pattern can not also be spotted and expected to happen in many other projects as well. ## Where does it end? The tools are still improving. We keep adding flaws when we do bugfixes and add new features. Someone has suggested it might work as with fuzzing, that we will see a plateau within a few years. I suppose we just have to see how it goes. This avalanche is going to make maintainer overload even worse. Some projects will have a hard time to handle this kind of backlog expansion without any added maintainers to help. It is probably a good time for the bad guys who can easily find this many problems themselves by just using the same tools, before all the projects get time, manpower and energy to fix them. Then everyone needs to update to the released versions, which we know is likely to take an even longer time. We are up for a bumpy ride.
21523
Reposted by fnord
Patrick Breyer @echo-pbreyer.digitalcourage.social.ap.brid.gy · 02/04/2026
🇪🇺The end of #ChatControl tomorrow is not a legal gap, it’s a fresh start! Instead of useless mass surveillance, we need targeted policing & secure apps. Read our 5-point plan for genuine #ChildProtection (incl. voices of survivors) […]
digitalcourage.social
Original post on digitalcourage.social
12025