a broad concept article for open-source
POPULARITY
Categories
New @greenpillnet pod out today!
Topics covered in this episode: Has the cost of building software just dropped 90%? More on Deprecation Warnings How FOSS Won and Why It Matters Should I be looking for a GitHub alternative? Extras Joke Watch on YouTube About the show Sponsored by us! Support our work through: Our courses at Talk Python Training The Complete pytest Course Patreon Supporters Connect with the hosts Michael: @mkennedy@fosstodon.org / @mkennedy.codes (bsky) Brian: @brianokken@fosstodon.org / @brianokken.bsky.social Show: @pythonbytes@fosstodon.org / @pythonbytes.fm (bsky) Join us on YouTube at pythonbytes.fm/live to be part of the audience. Usually Monday at 10am PT. Older video versions available there too. Finally, if you want an artisanal, hand-crafted digest of every week of the show notes in email form? Add your name and email to our friends of the show list, we'll never share it. HEADS UP: We are taking next week off, happy holiday everyone. Michael #1: Has the cost of building software just dropped 90%? by Martin Alderson Agentic coding tools are collapsing “implementation time,” so the cost curve of shipping software may be shifting sharply Recent programming advancements haven't been that great of a true benefit: Cloud, TDD, microservices, complex frontends, Kubernetes, etc. Agentic AI's big savings are not just code generation, but coordination overhead reduction (fewer handoffs, fewer meetings, fewer blocks). Thinking, product clarity, and domain decisions stay hard, while typing and scaffolding get cheap. Is it the end of software dev? Not really, see Jevons paradox: when production gets cheaper, total demand can rise rather than spending simply falling. (Historically: the efficiency of coal use led to the increased consumption of coal) Pushes back on “only good for greenfield” by arguing agents also help with legacy code comprehension and bug-fixing. I 100% agree. #Legacy code for the win. Brian #2: More on Deprecation Warnings How are people ignoring them? yep, it's right in the Python docs: -W ignore::DeprecationWarning Don't do that! Perhaps the docs should give the example of emitting them only once -W once::::DeprecationWarning See also -X dev mode , which sets -W default and some other runtime checks Don't use warn, use the @warnings.deprecated decorator instead Thanks John Hagen for pointing this out Emits a warning It's understood by type checkers, so editors visually warn you You can pass in your own custom UserWarning with category mypy also has a command line option and setting for this --enable-error-code deprecated or in [tool.mypy] enable_error_code = ["deprecated"] My recommendation Use @deprecated with your own custom warning and test with pytest -W error Michael #3: How FOSS Won and Why It Matters by Thomas Depierre Companies are not cheap, companies optimize cost control. They do this by making purchasing slow and painful. FOSS is/was a major unlock hack to skip procurement, legal, etc. Example is months to start using a paid “Add to calendar” widget! It “works both ways”: the same bypass lowers the barrier for maintainers too, no need for a legal entity, lawyers, liability insurance, or sales motion. Proposals that “fix FOSS” by reintroducing supply-chain style controls (he name-checks SBOMs and mandated processes) risk being rejected or gamed, because they restore the very friction FOSS sidesteps. Brian #4: Should I be looking for a GitHub alternative? Pricing changes for GitHub Actions The self-hosted runner pricing change caused a kerfuffle. It's has been postponed But… if you were to look around, maybe pay attention to These 4 GitHub alternatives are just as good—or better Codeburg, BitBucket, GitLab, Gitea And a new-ish entry, Tangled Extras Brian: End of year sale for The Complete pytest Course Use code XMAS2025 for 50% off before Dec 31 Writing work on Lean TDD book on hold for holidays Will pick up again in January Michael: PyCharm has better Ruff support now out of the box, via Daniel Molnar This is from the release notes of 2025.3: "PyCharm 2025.3 expands its LSP integration with support for Ruff, ty, Pyright, and Pyrefly.” If you check out the LSP section it will land you on this page and you can go to Ruff. The Ruff doc site was also updated. Previously it was only available external tools and a third party plugin, this feels like a big step. Fun quote I saw on ExTwitter: May your bug tracker be forever empty. Joke: Try/Catch/Stack Overflow Create a super annoying linkedin profile - From Tim Kellogg, submitted by archtoad
Good news for custom Android ROMs, Rust is here to stay in the kernel, an open source success story in Germany, and a new version of elementary OS is out. Plus discoveries is back including better Firefox history, migrating from Windows to Linux, automating telescopes, turning old tablets into clocks, and more. News Good news for custom ROMs: Google just released the Android 16 QPR2 The (successful) end of the kernel Rust experiment New Linux Patch Confirms: Rust Experiment Is Done, Rust Is Here To Stay Goodbye, Microsoft: Schleswig-Holstein relies on Open Source and saves millions elementary OS 8.1 Available Now Discoveries Better History Operese commodore64 is back!? Making History: Signing the Commodore Contract + C64 Ultimate Production Update PiFinder Fullscreen Clock Clasp Tailscale Tailscale is an easy to deploy, zero-config, no-fuss VPN that allows you to build simple networks across complex infrastructure. Go to tailscale.com/lnl and try Tailscale out for free for up to 100 devices and 3 users, with no credit card required. Use code LATENIGHTLINUX for three free months of any Tailscale paid plan. Support us on patreon and get an ad-free RSS feed with early episodes sometimes See our contact page for ways to get in touch. RSS: Subscribe to the RSS feeds here
Good news for custom Android ROMs, Rust is here to stay in the kernel, an open source success story in Germany, and a new version of elementary OS is out. Plus discoveries is back including better Firefox history, migrating from Windows to Linux, automating telescopes, turning old tablets into clocks, and more. News Good news for custom ROMs: Google just released the Android 16 QPR2 The (successful) end of the kernel Rust experiment New Linux Patch Confirms: Rust Experiment Is Done, Rust Is Here To Stay Goodbye, Microsoft: Schleswig-Holstein relies on Open Source and saves millions elementary OS 8.1 Available Now Discoveries Better History Operese commodore64 is back!? Making History: Signing the Commodore Contract + C64 Ultimate Production Update PiFinder Fullscreen Clock Clasp Tailscale Tailscale is an easy to deploy, zero-config, no-fuss VPN that allows you to build simple networks across complex infrastructure. Go to tailscale.com/lnl and try Tailscale out for free for up to 100 devices and 3 users, with no credit card required. Use code LATENIGHTLINUX for three free months of any Tailscale paid plan. Support us on patreon and get an ad-free RSS feed with early episodes sometimes See our contact page for ways to get in touch. RSS: Subscribe to the RSS feeds here
We continue to ride the trapar waves as Zigg & Aqua watch the classic 2005 mecha anime Psalms of Planets Eureka Seven, and discuss their thoughts and feelings on it as it celebrates its 20th birthday. Keep an eye out for this podcast between main installments of The GLORIO Chat – every two weeks or so – as we work our way through the show. This installment we cover Episode 45 “Don't You Want Me?” and Episode 46 “Planet Rock”
New Steam hardware • YunoHost • Conor's new router • Games Co-Op • Living abroad
Nodesignal feiert heute seinen 4. Geburtstag und wir sind damit eine Epoche an der Seite von Bitcoin und bringen euch Woche für Woche Bitcoin Content auf die Ohren. So richtig Feierstimmung kommt in diesem Jahr jedoch irgendwie nicht auf und damit willkommen beim Bärensignal Podcast.In der heutigen und damit letzten Folge der dritten Staffel sprechen Martin, Calso, Chris, Zetti und Thorsten über die aktuelle Stimmung im und um den Bitcoin Markt, reflektieren das Jahr 2025 und geben einen Ausblick auf die kommende vierte Staffel im Jahr 2026. Ab dann wird eine Staffel immer 21 Folgen mit anschließenden fünf Wochen Pause beinhalten. Zudem gibt es Infos, welche Formate euch in der neuen Staffel erwarten.Von und mit: - Martin - Calso - Chris - Thorsten - ZettizettlerProduziert und geschnitten: ThorstenHier könnt ihr uns eine Spende über Lightning da lassen: ⚡️nodesignal@getalby.comZusätzlich haben wir auch einen Silent Payment Link: sp1qq0a2rles9y32ffmj0eawvjglgqsgj7hq99ers580l98k42a7rh9szq3sa50fh2e5lwf22fxcjy0qw88u72vlj328qr39da245sq4nrskuqvvv5l4Neben dem Podcast findet ihr uns auch auf YouTubeFür Feedback und weitergehenden Diskussionen kommt gerne in die Telegramgruppe von Nodesignal und bewertet uns bei Spotify und Apple Podcasts, das hilft uns sehr. Folgt uns auch gerne bei Nostr:npub1n0devk3h2l3rx6vmt24a3lz4hsxp7j8rn3x44jkx6daj7j8jzc0q2u02cy und Twitter.Blockzeit: 927889E223 - Costa Rica: Bienvenidos y pura vida!E224 - El Salvador: Bitcoin Country?E226 - SurinamE210 - 3 Jahre NodesignalMünzcrime - Bitcoin auf der SpurShoutout an Gamer für seinen Bot und ServicesOutro bereitgestellt von SamCover bereitgestellt von KanutoTimestamps:(00:00:00) Intro(00:00:21) Begrüßung und Blockzeit(00:03:19) V4V Einschätzung Zetti(00:05:46) Erste Eindrücke von Zetti und Inauguration(00:08:48) Motivation zur Team-Erweiterung(00:13:23) Die Bärenmarkt-Diskussion und die Marktstimmung(00:21:23) Der Einfluss von Makroökonomie auf Bitcoin(00:27:22) Die Herausforderungen der Bitcoin-Adoption(00:31:56) Die Notwendigkeit von Bitcoin in unsicheren Zeiten(00:37:38) Positive Entwicklungen und Ausblick auf die Zukunft(00:44:54) Community und persönliche Erfahrungen(00:50:03) Jubiläum und Rückblick auf vier Jahre Nodesignal(00:58:50) Technologische Entwicklungen und Automatisierung(01:08:14) Selbstsouveränität und persönliche Softwareentwicklung(01:14:18) Ausblick auf zukünftige Themen und Feedback zu Serien(01:17:53) Zukunftspläne und Staffelstruktur(01:22:48) Entwickler im Fokus: DevBoost und TechBoost(01:25:20) Open Source und neue Serienideen(01:26:08) Preisprognosen und Ausblick auf das nächste Jahr(01:33:38) Weihnachten und persönliche Reflexionen(01:36:39) Rückblick und Ausblick auf den Podcast(01:40:11) Community und Bitcoin-Services(01:41:34) Outro: Nodesignal Bärenmarkt - Wir lachen rein
** Episodio 134** - Multimedia con Linux e l'Open Source assieme a FraYoshiIn questo nuovo episodio torna il nostro Ribby che ha ospitato Francesco, conosciuto sul web come FraYoshi ed esperto conoscitore di Linux da 15 anni. Ribby e Yoshi insieme fanno una carrellata su tantissimi software Open Source di grafica e multimedia che si possono utilizzare su Linux al posto di quelli “canonici” di Windows, dimostrando una volta ancora che si può lavorare e usare il proprio PC liberandosi dal sistema operativo di Redmond.Tutti i link dove puoi trovare FraYoshi:https://furayoshi.com/about/#you-can-find-him-also-onTi auguriamo quindi un buon ascolto e ti ricordiamo che puoi sostenerci su: https://it.tipeee.com/produttividigitali--***--Per ascoltare la puntata e per altri link vai su: https://produttividigitali.it/librepodcastYoutube: https://www.youtube.com/@produttividigitali/podcasts--***--Se anche tu vuoi dire la tua su quello che condividiamo, puoi scriverci qui: telegram.me/librepodcast #librepodcast:matrix.org email: librepodcastinfo@gmail.comFirma la petizione per la tua privacy su: https://stopscanningme.eu/en/index.htmlVi ricordiamo che potete ascoltarci anche su Radio Tomoko (https://www.radiotomoko.com/librepodcast) che ringraziamo sempre tantissimo per ritrasmetterci e anche su Telegram nel canale gestito da Radio Unitoo (https://t.me/UnitooWebRadio_Podcast) che ringraziamo ulteriormente per il supporto.---E ricordatevi di sostenere anche @devol@mastodon.uno che mantiene Castopod.it e tanti altri podcast. Offri loro un caffè: https://ko-fi.com/devol.Intro & background musicChronos - Alexander Nakarada FreePD.com - 100% Free Music Free for Commercial Use, Free Of Royalties, Free Of Attribution, Creative Commons 0Outro:Uberpunch by Alexander Nakarada |Music promoted by https://www.free-stock-music.comCreative Commons / Attribution 4.0 International (CC BY 4.0)https://creativecommons.org/licenses/by/4.0/
The Great Holiday Homelab Special! Where our community brought their absolute best, from budget busters to beautiful disasters. Plus, a boosties celebration! Grab an eggnog and join us as we attempt to choose this year's winners.Sponsored By:Managed Nebula: Meet Managed Nebula from Defined Networking. A decentralized VPN built on the open-source Nebula platform that we love. 1Password Extended Access Management: 1Password Extended Access Management is a device trust solution for companies with Okta, and they ensure that if a device isn't trusted and secure, it can't log into your cloud apps. CrowdHealth: Discover a Better Way to Pay for Healthcare with Crowdfunded Memberships. Join CrowdHealth to get started today for $99 for your first three months using UNPLUGGED.Unraid: A powerful, easy operating system for servers and storage. Maximize your hardware with unmatched flexibility. Support LINUX UnpluggedLinks:
The boys are back one last time! Our last episode of the year, and we have awards to give out! ==== Special Thanks to Our Patrons! ==== https://thelinuxcast.org/patrons/ ===== Follow us
In this cozy holiday episode of Linux Out Loud, Wendy, Nate, and Bill juggle Christmas chaos, retro joy, and serious tech lessons. Nate shares the excitement of finally getting his Commodore 64 Ultimate under the tree and rebuilding vintage Christmas trains, while Bill tells a powerful story about stepping into a network left behind after a colleague's passing—and why planning password and account access for loved ones matters more than any gadget. From Synology NAS upgrades and “you can never have too much storage” energy, to Fedora gaming projects, Bazite and Nobara, and the realities of traveling as a digital nomad, the crew covers a lot of nerd ground. They also dig into Home Assistant dashboards, smart bulbs and Christmas displays, securing IoT networks, and why Linux printing is still a little spicy even as it improves. Whether you're here for legacy planning, blinking LEDs, or just some winter-flavored banter, this episode wraps it all up with community love and future-topic teases. Find the rest of the show notes at: https://tuxdigital.com/podcasts/linux-out-loud/lol-118/ Visit the Tux Digital Merch Store: https://store.tuxdigital.com/ Connect with the Hosts: Contact Form: https://tuxdigital.com/contact Matt – @MattTDN on Twitter Wendy – @WendyDLN on Mastodon Nate – CubicleNate.com Bill – @ctlinux Special Guest: Bill.
Recent Windows updates break RemoteApp connections France arrests threat actors for installing malware on Italian ferry Senate Intel chair urges safeguard against open-source software threats Huge thanks to our sponsor, Adaptive Security This episode is brought to you by Adaptive Security, the first cybersecurity company backed by OpenAI. Security training fails when it's generic. Adaptive's platform personalizes training and runs deepfake simulations across email, SMS, voice, and video. And with Adaptive's AI Content Creator, you can drop in a breaking threat or compliance doc and instantly turn it into interactive, multilingual training – no designers, no delays. Learn more at adaptivesecurity.com. Find the stories behind the headlines at CISOseries.com.
The 365 Days of Astronomy, the daily podcast of the International Year of Astronomy 2009
Hosted by Chris Beckett & Shane Ludtke, two amateur astronomers in Saskatchewan. actualastronomy@gmail.com Today we have a guest joining us, Richard Wolf-Jacobson who is the founder of BB Labs/ PiFinder which is a new type of finder device. https://www.pifinder.io/ Before we get going Richard, can you tell us about where you are / observe / how you got started in Astronomy, what your interests are and what equipment you use? * What is a Pi Finder? * How does it work? / How do you set it up? * Do you need to attach anything to your AltAz or Dec Axis? * What is plate solving..isn't that just for imagers? * How accurate is it? * What camera is in the device? Can someone do anything with the images? Do they get exported out to one's phone? * How did you come up with the PiFinder * I see it is Open Source - what makes it open source? How can people modify it? Can someone roll their own? * What databases are in there? Can someone add their own? Can it interface with SkySafari or other softwares? * What formats does it come in or is it one size fits all? * Can one change from a back view to a side view to take it from a refractor to a dob. *Does it interface with Smart Phone? * How does it perform in the cold? * How small a scope can it go onto? * What are your future plans? We've added a new way to donate to 365 Days of Astronomy to support editing, hosting, and production costs. Just visit: https://www.patreon.com/365DaysOfAstronomy and donate as much as you can! Share the podcast with your friends and send the Patreon link to them too! Every bit helps! Thank you! ------------------------------------ Do go visit http://www.redbubble.com/people/CosmoQuestX/shop for cool Astronomy Cast and CosmoQuest t-shirts, coffee mugs and other awesomeness! http://cosmoquest.org/Donate This show is made possible through your donations. Thank you! (Haven't donated? It's not too late! Just click!) ------------------------------------ The 365 Days of Astronomy Podcast is produced by the Planetary Science Institute. http://www.psi.edu Visit us on the web at 365DaysOfAstronomy.org or email us at info@365DaysOfAstronomy.org.
If there's one person to listen to truly grasp the scale and intent of technology and where we're headed, it's Kevin Scott.The Microsoft CTO joins Aditya Agarwal to discuss navigating his Minus One days, the partnership with OpenAI, why the most valuable problems to solve are often the ones others ignore, and why building great things has never been easier, cheaper, or faster. Tune in now.Apply to SPC membership:https://airtable.com/appxDXHfPCZvb75qk/pagIZspLSFX7QrXcn/formConnect with us: 1. Kevin Scott: https://www.linkedin.com/in/jkevinscott/ 2. Aditya Agarwal: https://www.linkedin.com/in/adityaagarwal3/3. South Park Commons: https://www.linkedin.com/company/southparkcommons/ 00:00 Trailer01:34 Navigating Career Transitions and Impact07:35 Challenges and Insights for Entrepreneurs14:43 The Evolution and Future of AI28:42 The Grind of Startup Life34:11 Open Source vs. Closed Source Models46:49 Empowering the Next Generation with AI
GPUs dominate today's AI landscape, but Google argues they are not necessary for every workload. As AI adoption has grown, customers have increasingly demanded compute options that deliver high performance with lower cost and power consumption. Drawing on its long history of custom silicon, Google introduced Axion CPUs in 2024 to meet needs for massive scale, flexibility, and general-purpose computing alongside AI workloads. The Axion-based C4A instance is generally available, while the newer N4A virtual machines promise up to 2x price performance.In this episode, Andrei Gueletii, a technical solutions consultant for Google Cloud joined Gari Singh, a product manager for Google Kubernetes Engine (GKE), and Pranay Bakre, a principal solutions engineer at Arm for this episode, recorded at KubeCon + CloudNativeCon North America, in Atlanta. Built on Arm Neoverse V2 cores, Axion processors emphasize energy efficiency and customization, including flexible machine shapes that let users tailor memory and CPU resources. These features are particularly valuable for platform engineering teams, which must optimize centralized infrastructure for cost, FinOps goals, and price performance as they scale.Importantly, many AI tasks—such as inference for smaller models or batch-oriented jobs—do not require GPUs. CPUs can be more efficient when GPU memory is underutilized or latency demands are low. By decoupling workloads and choosing the right compute for each task, organizations can significantly reduce AI compute costs.Learn more from The New Stack about the Axion-based C4A: Beyond Speed: Why Your Next App Must Be Multi-ArchitectureArm: See a Demo About Migrating a x86-Based App to ARM64Join our community of newsletter subscribers to stay on top of the news and at the top of your game. Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.
Velkommen til endnu en episode i serien om AI og demokrati.Målet med serien er at udforske potentialerne i især generativ AI, og se på nogle af de måder AI kan bruges til at "tage kontrollen tilbage" og udnytte mulighederne i teknologien.Noget af det mest oplagte i den sammenhæng er de mange open source AI-modeller man kan downloade til sin egen computer, og som også i mange tilfælde kan køres helt offline.Open source AI-modellerne kan anvendes til hvad man nu har lyst til, og det giver muligheden for at få LLM'er til at hjælpe fx i værktøjer fra Polis, der bruger AI til at forsøge at skabe overblik og konsensus i offentlige debatter.Og det er altså noget af det vi skal se nærmere på i dag – med lektor Roman Jurowetzki fra Aalborg Universitet og med AI-konsulent Mikkel Freltoft Krogsholm.Lyt med!LINKSPilot-episoden om målet med serienRoman Jurowetzki, AAUMikkel Freltoft KrogsholmSkoleGPTOm Analyse og Tals A&ttack-modelPolisApertus – schweizisk open source AI og chatbotDerfor er open source AI egentlig lukket | NatureAI Denmark-projektetDigital Democracy Centre på SDUDDCxTrygfonden fellowship
Open source has always played a big role at 37signals. This week, Jason Fried and David Heinemeier Hansson share why they're drawn to working in the open, and how that mindset carries into their newest product, Fizzy.Key Takeaways00:12 – Why open source continues to matter at 37signals05:12 – Sharing work publicly pushes quality higher09:55 – How open source fits into Fizzy's SaaS setup15:15 – Treating open source as a gift19:41 – Getting direct feedback in unfamiliar but fun ways 22:56 – How the team decides what goes into Fizzy and what doesn't24:34 – A Danish language lessonLinks and ResourcesFizzy is a modern spin on kanban. Try it for free at fizzy.doRecord a video question for the podcastBooks by 37signalsSign up for a 30-day free trial at Basecamp.comHEY World | HEYThe REWORK podcastThe Rework Podcast on YouTubeThe 37signals Dev Blog37signals on YouTube@37signals on X
Our 228th episode with a summary and discussion of last week's big AI news!Recorded on 12/12/2025Hosted by Andrey Kurenkov and Jeremie HarrisFeel free to email us your questions and feedback at contact@lastweekinai.com and/or hello@gladstone.aiRead out our text newsletter and comment on the podcast at https://lastweekin.ai/In this episode:OpenAI's latest model GPT-5.2 demonstrates improved performance and enhanced multi-modal capabilities but comes with increased costs and a different knowledge cutoff date.Disney invests $1 billion in OpenAI to generate Disney character content, creating unique licensing agreements across characters from Marvel, Pixar, and Star Wars franchises.The U.S. government imposes new AI chip export rules involving security reviews, while simultaneously moving to prevent states from independently regulating AI.DeepMind releases a paper outlining the challenges and findings in scaling multi-agent systems, highlighting the complexities of tool coordination and task performance.Timestamps:(00:00:00) Intro / Banter(00:01:19) News PreviewTools & Apps(00:01:58) GPT-5.2 is OpenAI's latest move in the agentic AI battle | The Verge(00:08:48) Runway releases its first world model, adds native audio to latest video model | TechCrunch(00:11:51) Google says it will link to more sources in AI Mode | The Verge(00:12:24) ChatGPT can now use Adobe apps to edit your photos and PDFs for free | The Verge(00:13:05) Tencent releases Hunyuan 2.0 with 406B parametersApplications & Business(00:16:15) China set to limit access to Nvidia's H200 chips despite Trump export approval(00:21:02) Disney investing $1 billion in OpenAI, will allow characters on Sora(00:24:48) Unconventional AI confirms its massive $475M seed round(00:29:06) Slack CEO Denise Dresser to join OpenAI as chief revenue officer | TechCrunch(00:31:18) The state of enterprise AIProjects & Open Source(00:33:49) [2512.10791] The FACTS Leaderboard: A Comprehensive Benchmark for Large Language Model Factuality(00:36:27) Claude 4.5 Opus' Soul DocumentResearch & Advancements(00:43:49) [2512.08296] Towards a Science of Scaling Agent Systems(00:48:43) Evaluating Gemini Robotics Policies in a Veo World Simulator(00:52:10) Guided Self-Evolving LLMs with Minimal Human Supervision(00:56:08) Martingale Score: An Unsupervised Metric for Bayesian Rationality in LLM Reasoning(01:00:39) [2512.07783] On the Interplay of Pre-Training, Mid-Training, and RL on Reasoning Language Models(01:04:42) Stabilizing Reinforcement Learning with LLMs: Formulation and Practices(01:09:42) Google's AI unit DeepMind announces UK 'automated research lab'Policy & Safety(01:10:28) Trump Moves to Stop States From Regulating AI With a New Executive Order - The New York Times(01:13:54) [2512.09742] Weird Generalization and Inductive Backdoors: New Ways to Corrupt LLMs(01:17:57) Forecasting AI Time Horizon Under Compute Slowdowns(01:20:46) AI Security Institute focuses on AI measurements and evaluations(01:21:16) Nvidia AI Chips to Undergo Unusual U.S. Security Review Before Export to China(01:22:01) U.S. Authorities Shut Down Major China-Linked AI Tech Smuggling NetworkSynthetic Media & Art(01:24:01) RSL 1.0 has arrived, allowing publishers to ask AI companies pay to scrape content | The VergeSee Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.
In our latest episode, our co-hosts Robby and Tim talk with Jon Morehouse, founder and CEO of infrastructure company Nuon which enables Bring Your Own Cloud (BYOC) for everyone. This is an exclusive podcast episode with Jon digging into their decision to open source Nuon! The episode discusses the industry's growing shift toward Bring Your Own Cloud (BYOC), where SaaS products run directly inside a customer's cloud account rather than the vendor's. This model is especially attractive to enterprises because it improves security, data sovereignty, and trust, while enabling earlier pilots and shorter sales cycles. Infrastructure products like Nuon focus on making this practical by packaging applications so they work in customer environments without requiring vendor access, positioning BYOC as an enterprise-first approach that is likely to become the default way software is delivered.A key theme is open source as a trust and distribution strategy. In the infrastructure space, open sourcing lowers perceived risk, deepens customer collaboration, and builds community, which in turn acts as sales enablement for large enterprise deals. The conversation also connects BYOC to AI, highlighting patterns like bring-your-own-model, keys, and GPUs, and frames BYOC as a spectrum rather than a binary choice. The broader vision is to define and lead a BYOC movement by uniting vendors around shared standards, trust, and community-driven adoption.
Brian Kardell and Eric Meyer chat with colleague Dhruv Mark Collins to discuss Igalia's work with Valve on the Steam devices! Mentioned Links Helping Valve to Power Up Steam Devices Steam Powered Open Source (Igalia Chats May 2023)
Open source projects benefit from support that takes many shapes. Kat Cosgrove shares her experience across the Kubernetes project and the different ways people can make meaningful contributions to it. One of the underlying themes is that code is written for other people. That means PRs need to be understandable, discussions need to be enlightening, documentation needs to be clear, and collaboration needs to cross all sorts of boundaries. Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-361
⬥EPISODE NOTES⬥Modern application development depends on open source packages moving at extraordinary speed. Paul McCarty, Offensive Security Specialist focused on software supply chain threats, explains why that speed has quietly reshaped risk across development pipelines, developer laptops, and CI environments.JavaScript dominates modern software delivery, and the npm registry has become the largest package ecosystem in the world. Millions of packages, thousands of daily updates, and deeply nested dependency chainsഴ് often exceeding a thousand indirect dependencies per application. That scale creates opportunity, not only for innovation, but for adversaries who understand how developers actually build software.This conversation focuses on a shift that security leaders can no longer ignore. Malicious packages are not exploiting accidental coding errors. They are intentionally engineered to steal credentials, exfiltrate secrets, and compromise environments long before traditional security tools see anything wrong. Attacks increasingly begin on developer machines through social engineering and poisoned repositories, then propagate into CI pipelines where access density and sensitive credentials converge.Paul outlines why many existing security approaches fall short. Vulnerability databases were built for mistakes, not hostile code. AppSec teams are overloaded burning down backlogs. Security operations teams rarely receive meaningful telemetry from build systems. The result is a visibility gap where malicious code can run, disappear, and leave organizations unsure what was touched or stolen.The episode also explores why simple advice like “only use vetted packages” fails in practice. Open source ecosystems move too fast for manual approval models, and internal package repositories often collapse under friction. Meanwhile, attackers exploit maintainer accounts, typosquatting domains, and ecosystem trust to reach billions of downstream installations in a single event.This discussion challenges security leaders to rethink how software supply chain risk is defined, detected, and owned. The problem is no longer theoretical, and it no longer lives only in development teams. It sits at the intersection of intellectual property, identity, and delivery velocity, demanding attention from anyone responsible for protecting modern software-driven organizations.⬥GUEST⬥Paul McCarty, NPM Hacker and Software Supply Chain Researcher | On LinkedIn: https://www.linkedin.com/in/mccartypaul/⬥HOST⬥Sean Martin, Co-Founder at ITSPmagazine and Host of Redefining CyberSecurity Podcast | On LinkedIn: https://www.linkedin.com/in/imsmartin/ | Website: https://www.seanmartin.com⬥RESOURCES⬥LinkedIn Post: https://www.linkedin.com/posts/mccartypaul_i-want-to-introduce-you-to-my-latest-project-activity-7396297753196363776-1N-TOpen Source Malware Database: https://opensourcemalware.comOpenSSF Scorecard Project: https://securityscorecards.dev⬥ADDITIONAL INFORMATION⬥✨ More Redefining CyberSecurity Podcast:
This week on Destination Linux, we are joined by a special guest host: Craig Rowland, the CEO of Sandfly Security! We're diving deep into the reality of modern security—specifically when third-party code knocks over your castle. From malicious VSCode extensions to the "React2Shell" vulnerability, we discuss why "Open Source" doesn't automatically mean "Safe" and how to protect your supply chain. Then, is it possible to have the macOS experience without the Apple ecosystem? Ryan explores ravynOS, a daring new project with "macOS vibes and a BSD soul." It's attempting to bring the Aqua interface—and eventually Mac app compatibility—to the open-source world. Plus, Jill brings us massive news from Canonical and AMI. You might soon be installing Ubuntu directly from your motherboard's BIOS without ever needing a USB drive. We break down how this partnership changes the game for hardware. Finally, we read an incredible listener story. Show Notes: 00:00:00 Intro 00:02:39 Extended Intro: Open Source or Bust 00:03:08 Community Feedback: A Pentester's Origin Story 00:10:03 Guest Host: Sandfly Security & Agentless Protection 00:15:53 Security Deep Dive: Supply Chain Attacks, Malicious VSCode Extensions & React2Shell 00:44:31 ravynOS: The Open Source Mac Killer? 00:56:05 News: Canonical + AMI: Installing Ubuntu from the BIOS 01:08:07 Outro 01:09:33 Post-Show Shenanigans Support the Show: Sponsored by Sandfly Security: destinationlinux.net/sandfly - Get 50% off the Home Edition with code DESTINATION50 Special Guest: Craig Rowland.
Open source projects benefit from support that takes many shapes. Kat Cosgrove shares her experience across the Kubernetes project and the different ways people can make meaningful contributions to it. One of the underlying themes is that code is written for other people. That means PRs need to be understandable, discussions need to be enlightening, documentation needs to be clear, and collaboration needs to cross all sorts of boundaries. Show Notes: https://securityweekly.com/asw-361
In this episode of Hands-On IT, Landon Miles explores the history of servers and enterprise IT infrastructure, from early mainframe computers to cloud computing, Linux servers, virtualization, containers, and AI-driven data centers.This episode connects decades of server evolution into a clear, accessible story, focusing on the people, technologies, and ideas that shaped modern computing. From IBM's System/360 and minicomputers, to Unix and Linux, virtualization, cloud platforms like AWS and Azure, and container orchestration with Docker and Kubernetes, this episode explains how servers became the foundation of today's digital world.Topics covered include: • Server history and early computing systems • IBM mainframes and enterprise computing • Minicomputers and distributed computing • Unix, Linux, and open-source software • Virtualization and data center efficiency • Cloud computing and hyperscale infrastructure • Docker, Kubernetes, and cloud-native architecture • AI workloads, GPUs, and modern server hardwareLandon also highlights key figures in computing history, including Grace Hopper, Ken Olsen, Linus Torvalds, Dave Cutler, Diane Greene, and Jeff Bezos, and explains how their work still influences IT operations today.This episode is part of our December Best Of series, featuring some of our favorite moments and episodes from the past year.Originally aired March 20, 2025.
In this value-packed episode of SaaS Fuel, Jeff Mains welcomes Egil Østhus, co-founder and CEO of Unleash—the world's leading open source feature management platform. Egil dives deep into the journey from thriving in corporate boardrooms to taking the entrepreneurial leap, co-founding Unleash with his brother, and scaling a business using open source and commercial strategies. The conversation explores critical challenges of serving both community and enterprise needs, the next-generation concept of Feature Ops, the nuanced impact of AI in software development, and the essential synergy between engineering and business for SaaS growth. Whether you're steering product strategy or deep in the code, this episode delivers actionable insights and leadership wisdom for founders navigating modern tech landscapes.Key Takeaways00:00 "Building Smarter: Growth Strategies"03:22 "Entrepreneurship Realities & Tech Futures"07:38 Enterprise Software Delivery Challenges13:21 "Challenges of Co-Founding Family"16:10 "Balancing Open Source and Enterprise"17:45 Open Source vs. Paywall Decisions23:28 "Building Enterprise Growth Processes"24:24 "Start Early on Commercial Strategy"30:08 "Unified Metrics for Long-Term Impact"32:09 "DevOps: Feature Lifecycle & Governance"36:26 AI's Impact on Developer Roles39:55 "Business Context for Developers"42:37 Culture Consistency Drives Success46:49 "Magician Marketer & Scaling Stories"Tweetable Quotes“We in the Nordics are sort of naive—we don't understand how difficult it really is. ‘How hard can it be to build this company?'” — Egil Østhus“Always put community trust first. If you break it, that decision is irreversible.” — Egil Østhus“If you have the best product that nobody knows about, it's really hard to sell it.” — Egil Østhus“Feature Ops bridges the gap between engineering and business—bringing real-time control and risk mitigation to software delivery.” — Egil Østhus“Every developer should challenge themselves to understand how their work impacts the business and end users.” — Egil Østhus“Culture is consistency. It's the boring stuff you do every day that builds a scalable company.” — Egil ØsthusSaaS Leadership LessonsCustomer Value First:“It's all about creating customer value. Bringing product out there and building a proper business model.” (Egil Østhus)Get Outside Your Comfort Zone:True growth happens when you jump into deep water and test if you really can build what you preach.Respect and Resolve Tension (Especially in Family):In co-founder relationships, never allow tension to build—address issues immediately, maintaining respect and professionalism.Open Source Takes Discipline:Develop clear guiding policies on what features are open and which are gated—never betray community trust with irreversible decisions.Build Commercial Capacity Early:Don't wait for sales and marketing to “catch up”—grow those functions as soon as possible to accelerate learning and scale.Engineers Need Business Context:The best developers deeply understand the product's business impact, continually interact with customers, and help shape business direction.Guest Resourcesegil@getunleash.iohttps://www.getunleash.io
Open source projects benefit from support that takes many shapes. Kat Cosgrove shares her experience across the Kubernetes project and the different ways people can make meaningful contributions to it. One of the underlying themes is that code is written for other people. That means PRs need to be understandable, discussions need to be enlightening, documentation needs to be clear, and collaboration needs to cross all sorts of boundaries. Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-361
Kat is the Head of Developer Advocacy at Minimus, focused on the growth and nurturing of open source through authentic contribution. In particular, her specialties are approachable 101-level content and deep dives on the history of technology, with a focus on DevOps and cloud native. She was the Kubernetes Release Lead for 1.30 Uwubernetes, and currently serves as a member of the Kubernetes Steering Committee, the Release Team Subproject Lead, and a SIG Docs Tech Lead.When she's not at a conference, she spends her time playing video games, watching horror movies, or reading science fiction, but her current hyperfixation is film photography. She lives in Colorado with her cat, Espresso, who is the real brains behind the operation and actually ghostwriting all of her posts.You can find Kat on the following sites:BlueskyLinktreeHere are some links provided by Kat:MinimusPLEASE SUBSCRIBE TO THE PODCASTSpotifyApple PodcastsYouTube MusicAmazon MusicRSS FeedYou can check out more episodes of Coffee and Open Source on https://www.coffeeandopensource.comCoffee and Open Source is hosted by Isaac Levin
What if your data platform could serve AI-native workloads while scaling reliably across your entire organization? In this episode, Benjamin sits down with Ritesh, Staff Engineer at Lyft, to explore how to build a unified data stack with Spark, Trino, and ClickHouse, why AI is reshaping infrastructure decisions, and the strategies powering one of the industry's most sophisticated data platforms. Whether you're architecting data systems at scale or integrating AI into your analytics workflow, this conversation delivers actionable insights into reliability, modernization, and the future of data engineering. Tune in to discover how Lyft is balancing open-source investments with cutting-edge AI capabilities to unlock better insights from data.
Rob Whiteley, CEO of Coder, argues that the biggest winners in today's AI boom resemble the “picks and shovels” sellers of the California Gold Rush: companies that provide tools enabling others to build with AI. Speaking onThe New Stack Makersat AWS re:Invent, Whiteley described the current AI moment as the fastest-moving shift he's seen in 25 years of tech. Developers are rapidly adopting AI tools, while platform teams face pressure to approve them, as saying “no” is no longer viable. Whiteley warns of a widening gap between organizations that extract real value from AI and those that don't, driven by skills shortages and insufficient investment in training. He sees parallels with the cloud-native transition and predicts the rise of “AI-native” companies. As agentic AI grows, developers increasingly act as managers overseeing many parallel AI agents, creating new challenges around governance, security, and state management. To address this, Coder introduced Mux, an open source coding agent multiplexer designed to help developers manage and evaluate large volumes of AI-generated code efficiently.Learn more from The New Stack about AI Parallelization The Production Generative AI Stack: Architecture and ComponentsEnable ParallelFrontend/Backend Development to Unlock VelocityJoin our community of newsletter subscribers to stay on top of the news and at the top of your game. Hosted by Simplecast, an AdsWizz company. See pcm.adswizz.com for information about our collection and use of personal data for advertising.
This week's Electromaker Show is now available on YouTube and everywhere you get your podcasts! Welcome to the Electromaker Show episode 173! Somehow Nordic Semiconductor made the nRF54L series twice as fast as the nRF52, but use less power. We talk about this, and the nRF Connect VSCode plugin, along with Duke Nukem 3D running on an Arduino Nano Matter, Electromaker Behind the Tech and Product of the Week releases, and the wonderful Open Book Touch open source e-reader on Crowd Supply! Tune in for the latest maker, tech, DIY, IoT, embedded, and crowdfunding news stories from the week. Watch the show! We publish a new show every week. Subscribe here: https://www.youtube.com/channel/UCiMO2NHYWNiVTzyGsPYn4DA?sub_confirmation=1 We stock the latest products from Adafruit, Seeed Studio, Pimoroni, Sparkfun, and many more! Browse our shop: https://www.electromaker.io/shop Join us on Discord! https://discord.com/invite/w8d7mkCkxj​ Follow us on Twitter: https://twitter.com/ElectromakerIO Like us on Facebook: https://www.facebook.com/electromaker.io/ Follow us on Instagram: https://www.instagram.com/electromaker_io/ Featured in this show: Nordic Semiconductor nRF54L15 BLE SoC and DK Nordic Semiconductor BLE Side by side demo of the nRF54L and nrf52 nRF54DK nRF54L Series Express Course nRF Connect SDK Fundamentals nRF Connect VSCode Plugin demo Nordic Semicondcutor Duke Nukem 3d on an Arduino Nano Matter Electromaker Store Behind the Tech on YouTube Product of the Week: Morse Micro HaLowLink 1 Crowd Supply: Awesome projects you can fund Open Book Touch %
⬥EPISODE NOTES⬥Modern application development depends on open source packages moving at extraordinary speed. Paul McCarty, Offensive Security Specialist focused on software supply chain threats, explains why that speed has quietly reshaped risk across development pipelines, developer laptops, and CI environments.JavaScript dominates modern software delivery, and the npm registry has become the largest package ecosystem in the world. Millions of packages, thousands of daily updates, and deeply nested dependency chainsഴ് often exceeding a thousand indirect dependencies per application. That scale creates opportunity, not only for innovation, but for adversaries who understand how developers actually build software.This conversation focuses on a shift that security leaders can no longer ignore. Malicious packages are not exploiting accidental coding errors. They are intentionally engineered to steal credentials, exfiltrate secrets, and compromise environments long before traditional security tools see anything wrong. Attacks increasingly begin on developer machines through social engineering and poisoned repositories, then propagate into CI pipelines where access density and sensitive credentials converge.Paul outlines why many existing security approaches fall short. Vulnerability databases were built for mistakes, not hostile code. AppSec teams are overloaded burning down backlogs. Security operations teams rarely receive meaningful telemetry from build systems. The result is a visibility gap where malicious code can run, disappear, and leave organizations unsure what was touched or stolen.The episode also explores why simple advice like “only use vetted packages” fails in practice. Open source ecosystems move too fast for manual approval models, and internal package repositories often collapse under friction. Meanwhile, attackers exploit maintainer accounts, typosquatting domains, and ecosystem trust to reach billions of downstream installations in a single event.This discussion challenges security leaders to rethink how software supply chain risk is defined, detected, and owned. The problem is no longer theoretical, and it no longer lives only in development teams. It sits at the intersection of intellectual property, identity, and delivery velocity, demanding attention from anyone responsible for protecting modern software-driven organizations.⬥GUEST⬥Paul McCarty, NPM Hacker and Software Supply Chain Researcher | On LinkedIn: https://www.linkedin.com/in/mccartypaul/⬥HOST⬥Sean Martin, Co-Founder at ITSPmagazine and Host of Redefining CyberSecurity Podcast | On LinkedIn: https://www.linkedin.com/in/imsmartin/ | Website: https://www.seanmartin.com⬥RESOURCES⬥LinkedIn Post: https://www.linkedin.com/posts/mccartypaul_i-want-to-introduce-you-to-my-latest-project-activity-7396297753196363776-1N-TOpen Source Malware Database: https://opensourcemalware.comOpenSSF Scorecard Project: https://securityscorecards.dev⬥ADDITIONAL INFORMATION⬥✨ More Redefining CyberSecurity Podcast:
Die Balance zwischen Familie, Konzernjob und Side Project.Side Project, Vollzeitjob und dann auch noch Kinder. Klingt nach einer dieser Ideen, die man sonntags feiert und montags bereut. Aber was, wenn genau darin die Energie steckt, die dir im Konzernalltag fehlt? Und was, wenn die größte Challenge gar nicht Zeit ist, sondern Erwartungen, Selbstzweifel und der Druck, immer liefern zu müssen?In dieser Episode sprechen wir mit Stephan, iOS-Software-Engineer bei der Techniker Krankenkasse, Quereinsteiger mit McKinsey-Background, Vater von zwei Kindern und Indie-Developer der Haushaltsbuch-App Monee. Stephan nimmt uns mit in seine Hypercare-Phase als Elternteil, erklärt sein Setup mit Vier-Tage-Woche, Kinderbetreuung und klaren Absprachen und zeigt, wie er ein Side Project so baut, dass es nicht die Familie frisst.Wir gehen tief in Energiemanagement, Autonomie als Motivator, Support-Triage, den Umgang mit Crashs und negativen Reviews sowie in die Realität von Build-in-Public, inklusive Survivorship Bias. Dazu gibt es ehrliche Einblicke darin, wie man als Entwickler:in trotz wenig Zeit dranbleibt, ohne sich selbst zu zerlegen.Wenn du dich fragst, wie du Weiterbildung, Open Source oder ein eigenes Produkt neben Familie und Job realistisch unterkommst, ist das deine Episode.Bonus: Elternlogik des Tages. Ein Kind ist kein Kind. Du bist noch in der Überzahl.Unsere aktuellen Werbepartner findest du auf https://engineeringkiosk.dev/partnersDas schnelle Feedback zur Episode:
Open source projects benefit from support that takes many shapes. Kat Cosgrove shares her experience across the Kubernetes project and the different ways people can make meaningful contributions to it. One of the underlying themes is that code is written for other people. That means PRs need to be understandable, discussions need to be enlightening, documentation needs to be clear, and collaboration needs to cross all sorts of boundaries. Show Notes: https://securityweekly.com/asw-361
Topics covered in this episode: Deprecations via warnings docs PyAtlas: interactive map of the top 10,000 Python packages on PyPI. Buckaroo Extras Joke Watch on YouTube About the show Connect with the hosts Michael: @mkennedy@fosstodon.org / @mkennedy.codes (bsky) Brian: @brianokken@fosstodon.org / @brianokken.bsky.social Show: @pythonbytes@fosstodon.org / @pythonbytes.fm (bsky) Join us on YouTube at pythonbytes.fm/live to be part of the audience. Usually Monday at 10am PT. Older video versions available there too. Finally, if you want an artisanal, hand-crafted digest of every week of the show notes in email form? Add your name and email to our friends of the show list, we'll never share it. Brian #1: Deprecations via warnings Deprecations via warnings don't work for Python libraries Seth Larson How to encourage developers to fix Python warnings for deprecated features Ines Panker Michael #2: docs A collaborative note taking, wiki and documentation platform that scales. Built with Django and React. Made for self hosting Docs is the result of a joint effort led by the French
We cut the streaming cord the Linux way with free, legal internet TV you can curate, DVR, and self-host via Jellyfin or Plex. Then, we talk COSMIC stable with System76's CEO.Sponsored By:Managed Nebula: Meet Managed Nebula from Defined Networking. A decentralized VPN built on the open-source Nebula platform that we love. 1Password Extended Access Management: 1Password Extended Access Management is a device trust solution for companies with Okta, and they ensure that if a device isn't trusted and secure, it can't log into your cloud apps. CrowdHealth: Discover a Better Way to Pay for Healthcare with Crowdfunded Memberships. Join CrowdHealth to get started today for $99 for your first three months using UNPLUGGED.Unraid: A powerful, easy operating system for servers and storage. Maximize your hardware with unmatched flexibility. Support LINUX UnpluggedLinks:
There's a narrative we've been sold all year: "Move fast and break things." But a new 100-page report from the Future of Life Institute (FLI) suggests that what we actually broke might be the brakes.This week, the "Winter 2025 AI Safety Index" dropped, and the grades are alarming. Major players like OpenAI and Anthropic are barely scraping by with "C+" averages, while others like Meta are failing entirely. The headlines are screaming about the "End of the World," but if you're a business leader, you shouldn't be worried about Skynet—you should be worried about your supply chain.I read the full audit so you don't have to. In this episode, I move past the "Doomer" vs. "Accelerationist" debate to focus on the Operational Trust Gap. We are building our organizations on top of these models, and for the first time, we have proof that the foundation might be shakier than the marketing brochures claim.The real risk isn't that AI becomes sentient tomorrow; it's that we are outsourcing our safety to vendors who are prioritizing speed over stability. I break down how to interpret these grades without panicking, including:Proof Over Promises: Why FLI stopped grading marketing claims and started grading audit logs (and why almost everyone failed).The "Transparency Trap": A low score doesn't always mean "toxic"—sometimes it just means "secret." But is a "Black Box" vendor a risk you can afford?The Ideological War: Why Meta's "F" grade is actually a philosophical standoff between Open Source freedom and Safety containment.The "Existential" Distraction: Why you should ignore the "X-Risk" section of the report and focus entirely on the "Current Harms" data (bias, hallucinations, and leaks).If you are a leader wondering if you should ban these tools or double down, I share a practical 3-step playbook to protect your organization. We cover:The Supply Chain Audit: Stop checking just the big names. You need to find the "Shadow AI" in your SaaS tools that are wrapping these D-grade models.The "Ground Truth" Check: Why a "safe" model on paper might be useless in practice, and why your employees are your actual safety layer.Strategic Decoupling: Permission to not update the minute a new model drops. Let the market beta-test the mess; you stay surgical.By the end, I hope you'll see this report not as a reason to stop innovating, but as a signal that Governance is no longer a "Nice to Have"—it's a leadership competency.⸻If this conversation helps you think more clearly about the future we're building, make sure to like, share, and subscribe. You can also support the show by buying me a coffee.And if your organization is wrestling with how to lead responsibly in the AI era, balancing performance, technology, and people, that's the work I do every day through my consulting and coaching. Learn more at https://christopherlind.co.⸻Chapters:00:00 – The "Broken Brakes" Reality: 2025's Safety Wake-Up Call05:00 – The Scorecard: Why the "C-Suite" (OpenAI, Anthropic) is Barely Passing08:30 – The "F" Grade: Meta, Open Source, and the "Uncontrollable" Debate12:00 – The Transparency Trap: Is "Secret" the Same as "Unsafe"?18:30 – The Risk Horizon: Ignoring "Skynet" to Focus on Data Leaks22:00 – Action 1: Auditing Your "Shadow AI" Supply Chain25:00 – Action 2: The "Ground Truth" Conversation with Your Teams28:30 – Action 3: Strategic Decoupling (Don't Rush the Update)32:00 – Closing: Why Safety is Now a User Responsibility#AISafety #FutureOfLifeInstitute #AIaudit #RiskManagement #TechLeadership #ChristopherLind #FutureFocused #ArtificialIntelligence
Podcast: Exploited: The Cyber Truth Episode: When Open Source Gets You Into Hot Water: Copyleft Risk in Embedded SystemsPub date: 2025-12-11Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationOpen source accelerates development in embedded systems, but hidden license obligations can quickly create legal and operational risk. In this episode of Exploited: The Cyber Truth, host Paul Ducklin is joined by RunSafe Security Founder and CEO Joseph M. Saunders and Salim Blume, Director of Security Applications, for a look at how copyleft risk emerges and why compliance in embedded products is more challenging than many teams expect. Salim breaks down how restrictive licenses, such as GPL and AGPL, can force the disclosure of proprietary code, interrupt product shipments, or create exposure long after devices are deployed in the field. Joe shares why accurate SBOMs, automated license checks, and enforcing policy at build time are critical to preventing surprises in downstream products. The discussion also touches on the ongoing Vizio case, where the TV manufacturer faces litigation that could compel public release of source code under the GPL, highlighting how open source obligations can surface years after products hit the market. Together, Paul, Joe, and Salim explore: How copyleft obligations can require source-code disclosureWhy embedded environments complicate license complianceReal-world cases where unnoticed GPL dependencies caused major issues, such as Vizio's GPL lawsuit and Cisco's WRT54G router familyThe growing implications of AGPL for SaaS and connected servicesHow build-time SBOMs and automated controls reduce long-term risk Whether you're building connected devices, managing software supply chain compliance, or protecting proprietary IP, this episode offers practical guidance to reduce copyleft risk before it becomes a costly problem.The podcast and artwork embedded on this page are from RunSafe Security, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Philips durfde ruim twee jaar geen overnames te doen. Alle tijd en geld ging op aan de slaapapneu-affaire. Maar die tijd is voorbij: het bedrijf lijft de Amerikaanse start-up Spectrawave in. Geen gigantisch bedrijf, met zo'n 70 medewerkers, maar toch: gaat Philips nog meer op overnamejacht? Dat bespreken we deze aflevering. Daarin vertellen we je ook over Nvdia. Sinds de chipmaker groen licht heeft van de VS om de op-een-na-beste AI-chips aan China te leveren, stromen de bestellingen binnen. Klein detail: China wil die chips helemaal niet hebben. Duiken we ook nog op het SpaceX van Elon Musk. Vorige week lekte al uit dat er een beursgang aankomt en vandaag lijkt dat weer een stapje zekerder. En je hoort over het bedrijf achter de robotstofzuiger Roomba: dat is ter ziele gegaan. Te gast is Nico Inberg van De Aandeelhouder, die het hele verhaal rond OCI en Orascom alvast aanwijst als 'scam van het jaar'.See omnystudio.com/listener for privacy information.
This Week is the week for Cosmic! Jeff looks at a tiny NAS and Jonathan chats about the Orange Pi 6 Pro. Gnome says no more AI in extensions, Microsoft brings the Hornet, and you shouldn't be running Gogs. The Rust experiment is over, and CachyOS is eating Arch's lunch! For tips we have StarLit for your terminal weather needs, a primer on keeping eyes on the /var directory, and how to check whether your system has a good time source. You can find the show notes at https://bit.ly/3KPUqki and enjoy! Host: Jonathan Bennett Co-Hosts: Jeff Massie and Rob Campbell Download or subscribe to Untitled Linux Show at https://twit.tv/shows/untitled-linux-show Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord.
Our annual AMA! Join us, ask us questions. ==== Special Thanks to Our Patrons! ==== https://thelinuxcast.org/patrons/ ===== Follow us
This Week is the week for Cosmic! Jeff looks at a tiny NAS and Jonathan chats about the Orange Pi 6 Pro. Gnome says no more AI in extensions, Microsoft brings the Hornet, and you shouldn't be running Gogs. The Rust experiment is over, and CachyOS is eating Arch's lunch! For tips we have StarLit for your terminal weather needs, a primer on keeping eyes on the /var directory, and how to check whether your system has a good time source. You can find the show notes at https://bit.ly/3KPUqki and enjoy! Host: Jonathan Bennett Co-Hosts: Jeff Massie and Rob Campbell Download or subscribe to Untitled Linux Show at https://twit.tv/shows/untitled-linux-show Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord.
In this episode, eco & Tyler welcome back Skot who was at the African Bitcoin Conference, this year hosted in Mauritius, where he spoke on open-source Bitcoin mining. We swap travel tales (including Scott's chaotic Paris layover) and impressions of Mauritius, the conference venue, and side events focused on Bitcoin education. We dig into mining headlines: Bitdeer's missed ASIC roadmap and investor lawsuit, Bitmain's history (Antbleed) and why open-source mining matters, and MicroBT's M70-series lineup pushing industrial-scale, three-phase miners. Skot explains the theory behind Bitdeer's hyped “adiabatic charge recovery logic,” why it's hard to scale, and how thermal and power density realities define miner design. We go deep on open hardware and firmware progress: Braiins' open control board, Secure Boot obstacles, and Mujina's modular path to safe, customizable, dev-fee-free mining; plus Skot's BitCrain control board concept for USB‑controlled fleets. We share shop-floor lessons building AddIt boards and Ember One prototypes (solder paste, tombstoning, reflow profiles) and celebrate practical innovation like Gridless's open-source JuaKali direct-DC solar mining kit. On home-mining UX, Tyler demos new Home Assistant integrations for Canaan Avalons and WhatsMiner, and we preview Hydra Pool deployments (Grafana/Prometheus dashboards) for the upcoming Telehash. Finally, we update the community on the Samourai Wallet case: Keonne's facility designation, the continuing push for a presidential pardon, and how to support via petition and donations. #PardonSamourai.
Podcasting 2.0 December 12th 2025 Episode 244: "Open Source Royalty" Adam & Dave Introduce a new awards show and dive deep into podcast idenity The Only Boardroom that does not require an entry fee I'm Adam Curry in the Heart of the Texas Hill Country And in Alabama- the man who has the code in his hand and built the land Say hello to my Friend on the other End - Dave Jones! Download the mp3 Podcast Feed PodcastIndex.org Preservepodcasting.com Check out the podcasting 2.0 apps and services newpodcastapps.com Support us with your Time Talent and Treasure Positioning Boost Bait Boostagrams numerology Curiocaster social data ShowNotes We are LIT Awards Show TTS Julius Distributor What is a podcast and how do we identify it? Open Aggregator Alt Enclosure Video Transcript Search What is Value4Value? - Read all about it at Value4Value.info V4V Stats Last Modified 12/12/2025 14:29:53 by Freedom Controller
This week, we discuss how Netflix is disrupting media, IBM's Confluent acquisition, and Anthropic buying Bun. Plus, an important discussion on fonts and typography. Watch the YouTube Live Recording of Episode (https://www.youtube.com/live/nNpiI00HPDg?si=s_G3zr_Z8yPvGNbB) 550 (https://www.youtube.com/live/nNpiI00HPDg?si=s_G3zr_Z8yPvGNbB) Runner-up Titles Blame the children I never liked that font No emojis, this is business time Mahalo You need a Chief Economist On the cutlery tray Rundown Rubio Deletes Calibri as the State Department's Official Typeface (https://www.nytimes.com/2025/12/09/us/politics/rubio-state-department-font.html?smid=nytcore-ios-share) Cartridge (https://www.fontspring.com/fonts/simplebits/cartridge) Source Code Pro (https://adobe-fonts.github.io/source-code-pro/) It's Official: Netflix to Acquire Warner Bros. in Deal Valued at $82.7 Billion (https://www.hollywoodreporter.com/business/business-news/netflix-warner-bros-deal-hollywood-1236443081/) Confluent stock soars 29% as IBM announces $11 billion acquisition deal (https://www.cnbc.com/2025/12/08/ibm-confluent-deal-data.html) Bun is joining Anthropic (https://bun.com/blog/bun-joins-anthropic?utm_source=changelog-news) Claude Code is coming to Slack, and that's a bigger deal than it sounds (https://techcrunch.com/2025/12/08/claude-code-is-coming-to-slack-and-thats-a-bigger-deal-than-it-sounds/) OpenAI enterprise usage study (https://cote.io/2025/12/10/highlights-from-that-openai-the.html). Relevant to your Interests Antigravity Is Google's New Agentic Development Platform (https://thenewstack.io/antigravity-is-googles-new-agentic-development-platform/) Amazon CTO Werner Vogels' Predictions for 2026 (https://thenewstack.io/amazon-cto-werner-vogels-predictions-for-2026/) ‘End-to-end encrypted' smart toilet camera is not actually end-to-end encrypted (https://techcrunch.com/2025/12/03/end-to-end-encrypted-smart-toilet-camera-is-not-actually-end-to-end-encrypted/) AWS AI IDE, AgentCore throw down gauntlets for Microsoft (https://www.techtarget.com/searchsoftwarequality/news/366635669/AWS-AI-IDE-AgentCore-throw-down-gauntlets-for-Microsoft) Admins and defenders gird themselves against maximum-severity server vuln (https://arstechnica.com/security/2025/12/admins-and-defenders-gird-themselves-against-maximum-severity-server-vulnerability/) Andy Jassy says Amazon's Nvidia competitor chip is already a multibillion-dollar business (https://techcrunch.com/2025/12/03/andy-jassy-says-amazons-nvidia-competitor-chip-is-already-a-multi-billion-dollar-business/) 52 things I learned in 2025 (https://medium.com/@tomwhitwell/52-things-i-learned-in-2025-edeca7e3fdd8) State of AI | OpenRouter (https://openrouter.ai/state-of-ai) Microsoft has a problem: nobody wants its poor AI products (https://www.windowscentral.com/artificial-intelligence/microsoft-has-a-problem-nobody-wants-to-buy-or-use-its-shoddy-ai) DHH & Open Source (https://ma.tt/2025/12/dhh-open-source/) Gruber: Apple employees 'giddy' about Alan Dye's departure - 9to5Mac (https://9to5mac.com/2025/12/04/gruber-apple-employees-giddy-about-alan-dyes-departure/) Apple announces (https://www.cnbc.com/2025/12/04/apple-announces-departure-lisa-jackson-kate-adams.html) the (https://www.cnbc.com/2025/12/04/apple-announces-departure-lisa-jackson-kate-adams.html) departure of general counsel and policy chief (https://www.cnbc.com/2025/12/04/apple-announces-departure-lisa-jackson-kate-adams.html) Nonsense All of the Men's Clothing We Loved (and Didn't) From Costco's Kirkland Signature (https://www.nytimes.com/wirecutter/reviews/costco-kirkland-signature-menswear/) Conferences cfgmgmtcamp 2026 (https://cfgmgmtcamp.org/ghent2026/), February 2nd to 4th, Ghent, BE. Coté speaking and doing live SDI (https://www.softwaredefinedinterviews.com) with John Willis. DevOpsDayLA at SCALE23x (https://www.socallinuxexpo.org/scale/23x), March 6th, Pasadena, CA Use code: DEVOP for 50% off. Devnexus 2026 (https://devnexus.com), March 4th to 6th, Atlanta, GA. Whole bunch of VMUGs, mostly in the US. The CFPs are open (https://app.sessionboard.com/submit/vmug-call-for-content-2026/ae1c7013-8b85-427c-9c21-7d35f8701bbe?utm_campaign=5766542-VMUG%20Voice&utm_medium=email&_hsenc=p2ANqtz-_YREN7dr6p3KSQPYkFSN5K85A-pIVYZ03ZhKZOV0O3t3h0XHdDHethhx5O8gBFguyT5mZ3n3q-ZnPKvjllFXYfWV3thg&_hsmi=393690000&utm_content=393685389&utm_source=hs_email), go speak at them! Coté speaking in Amsterdam. Amsterdam (March 17-19, 2026), Minneapolis (April 7-9, 2026), Toronto (May 12-14, 2026), Dallas (June 9-11, 2026), Orlando (October 20-22, 2026) SDT News & Community Join our Slack community (https://softwaredefinedtalk.slack.com/join/shared_invite/zt-1hn55iv5d-UTfN7mVX1D9D5ExRt3ZJYQ#/shared-invite/email) Email the show: questions@softwaredefinedtalk.com (mailto:questions@softwaredefinedtalk.com) Free stickers: Email your address to stickers@softwaredefinedtalk.com (mailto:stickers@softwaredefinedtalk.com) Follow us on social media: Twitter (https://twitter.com/softwaredeftalk), Threads (https://www.threads.net/@softwaredefinedtalk), Mastodon (https://hachyderm.io/@softwaredefinedtalk), LinkedIn (https://www.linkedin.com/company/software-defined-talk/), BlueSky (https://bsky.app/profile/softwaredefinedtalk.com) Watch us on: Twitch (https://www.twitch.tv/sdtpodcast), YouTube (https://www.youtube.com/channel/UCi3OJPV6h9tp-hbsGBLGsDQ/featured), Instagram (https://www.instagram.com/softwaredefinedtalk/), TikTok (https://www.tiktok.com/@softwaredefinedtalk) Book offer: Use code SDT for $20 off "Digital WTF" by Coté (https://leanpub.com/digitalwtf/c/sdt) Sponsor the show (https://www.softwaredefinedtalk.com/ads): ads@softwaredefinedtalk.com (mailto:ads@softwaredefinedtalk.com) Recommendations Brandon: Short Power Extension Cord Outlet Saver (https://www.amazon.com/dp/B07H9MCTGL?ref=ppx_yo2ov_dt_b_fed_asin_title&th=1) Matt: Everything is Tuberculosis (https://en.wikipedia.org/wiki/Everything_Is_Tuberculosis) Octopus Project - Music is Happiness (https://www.youtube.com/watch?v=W6y5hisXx7s) Coté: The Octopus Organization (https://www.theoctopusorganization.com). Photo Credits Header (https://unsplash.com/photos/white-and-black-dice-on-black-surface-IrQrT37qDQE)
FreeBSD 15 release, moving from OpenBSD to FreeBSD, ZFS Boot Environments explained, and more... NOTES This episode of BSDNow is brought to you by Tarsnap (https://www.tarsnap.com/bsdnow) and the BSDNow Patreon (https://www.patreon.com/bsdnow) Headlines Welcome to the world FreeBSD 15.0-RELEASE Announcement (https://www.freebsd.org/releases/15.0R/announce/) and Release Notes (https://www.freebsd.org/releases/15.0R/relnotes/) We're (now) moving from OpenBSD to FreeBSD for Firewalls (https://utcc.utoronto.ca/~cks/space/blog/sysadmin/OpenBSDToFreeBSDMove) - Submitted by listener Gary News Roundup ZFS Boot Environments Explained (https://vermaden.wordpress.com/2025/11/25/zfs-boot-environments-explained/) Why I (still) love Linux (https://it-notes.dragas.net/2025/11/24/why-i-still-love-linux/) rocinante - A configuration management tool by the BastilleBSD team (https://github.com/BastilleBSD/rocinante) A Grown-up ZFS Data Corruption Bug (https://github.com/oxidecomputer/oxide-and-friends/blob/master/2025_11_24.md) and YouTube (https://www.youtube.com/watch?v=srKYxF66A0c) Tarsnap This weeks episode of BSDNow was sponsored by our friends at Tarsnap, the only secure online backup you can trust your data to. Even paranoids need backups. Feedback/Questions Claudio - A Silent Reflection (https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/641/feedback/Claudio%20-%20Reflection.md) Send questions, comments, show ideas/topics, or stories you want mentioned on the show to feedback@bsdnow.tv (mailto:feedback@bsdnow.tv) Join us and other BSD Fans in our BSD Now Telegram channel (https://t.me/bsdnow)
Topics covered in this episode: PEP 798: Unpacking in Comprehensions Pandas 3.0.0rc0 typos A couple testing topics Extras Joke Watch on YouTube About the show Sponsored by us! Support our work through: Our courses at Talk Python Training The Complete pytest Course Patreon Supporters Connect with the hosts Michael: @mkennedy@fosstodon.org / @mkennedy.codes (bsky) Brian: @brianokken@fosstodon.org / @brianokken.bsky.social Show: @pythonbytes@fosstodon.org / @pythonbytes.fm (bsky) Join us on YouTube at pythonbytes.fm/live to be part of the audience. Usually Monday at 10am PT. Older video versions available there too. Finally, if you want an artisanal, hand-crafted digest of every week of the show notes in email form? Add your name and email to our friends of the show list, we'll never share it. Michael #1: PEP 798: Unpacking in Comprehensions After careful deliberation, the Python Steering Council is pleased to accept PEP 798 – Unpacking in Comprehensions. Examples [*it for it in its] # list with the concatenation of iterables in 'its' {*it for it in its} # set with the union of iterables in 'its' {**d for d in dicts} # dict with the combination of dicts in 'dicts' (*it for it in its) # generator of the concatenation of iterables in 'its' Also: The Steering Council is happy to unanimously accept “PEP 810, Explicit lazy imports” Brian #2: Pandas 3.0.0rc0 Pandas 3.0.0 will be released soon, and we're on Release candidate 0 Here's What's new in Pands 3.0.0 Dedicated string data type by default Inferred by default for string data (instead of object dtype) The str dtype can only hold strings (or missing values), in contrast to object dtype. (setitem with non string fails) The missing value sentinel is always NaN (np.nan) and follows the same missing value semantics as the other default dtypes. Copy-on-Write The result of any indexing operation (subsetting a DataFrame or Series in any way, i.e. including accessing a DataFrame column as a Series) or any method returning a new DataFrame or Series, always behaves as if it were a copy in terms of user API. As a consequence, if you want to modify an object (DataFrame or Series), the only way to do this is to directly modify that object itself. pd.col syntax can now be used in DataFrame.assign() and DataFrame.loc() You can now do this: df.assign(c = pd.col('a') + pd.col('b')) New Deprecation Policy Plus more - Michael #3: typos You've heard about codespell … what about typos? VSCode extension and OpenVSX extension. From Sky Kasko: Like codespell, typos checks for known misspellings instead of only allowing words from a dictionary. But typos has some extra features I really appreciate, like finding spelling mistakes inside snake_case or camelCase words. For example, if you have the line: *connecton_string = "sqlite:///my.db"* codespell won't find the misspelling, but typos will. It gave me the output: *error: `connecton` should be `connection`, `connector` ╭▸ ./main.py:1:1 │1 │ connecton_string = "sqlite:///my.db" ╰╴━━━━━━━━━* But the main advantage for me is that typos has an LSP that supports editor integrations like a VS Code extension. As far as I can tell, codespell doesn't support editor integration. (Note that the popular Code Spell Checker VS Code extension is an unrelated project that uses a traditional dictionary approach.) For more on the differences between codespell and typos, here's a comparison table I found in the typos repo: https://github.com/crate-ci/typos/blob/master/docs/comparison.md By the way, though it's not mentioned in the installation instructions, typos is published on PyPI and can be installed with uv tool install typos, for example. That said, I don't bother installing it, I just use the VS Code extension and run it as a pre-commit hook. (By the way, I'm using prek instead of pre-commit now; thanks for the tip on episode #448!) It looks like typos also publishes a GitHub action, though I haven't used it. Brian #4: A couple testing topics slowlify suggested by Brian Skinn Simulate slow, overloaded, or resource-constrained machines to reproduce CI failures and hunt flaky tests. Requires Linux with cgroups v2 Why your mock breaks later Ned Badthelder Ned's taught us before to “Mock where the object is used, not where it's defined.” To be more explicit, but probably more confusing to mock-newbies, “don't mock things that get imported, mock the object in the file it got imported to.” See? That's probably worse. Anyway, read Ned's post. If my project myproduct has user.py that uses the system builtin open() and we want to patch it: DONT DO THIS: @patch("builtins.open") This patches open() for the whole system DO THIS: @patch("myproduct.user.open") This patches open() for just the user.py file, which is what we want Apparently this issue is common and is mucking up using coverage.py Extras Brian: The Rise and Rise of FastAPI - mini documentary “Building on Lean” chapter of LeanTDD is out The next chapter I'm working on is “Finding Waste in TDD” Notes to delete before end of show: I'm not on track for an end of year completion of the first pass, so pushing goal to 1/31/26 As requested by a reader, I'm releasing both the full-so-far versions and most-recent-chapter Michael: My Vanishing Gradient's episode is out Django 6 is out Joke: tabloid - A minimal programming language inspired by clickbait headlines
The Ultimate Geek Gift Guide for 2025 is here! Don't buy that RAM yet—we explain the massive AI-driven price spikes. Also, testing the powerful VDO Ninja for streaming and our reaction to Linus Tech Tips' latest Linux takes. 00:00:00 Intro 00:01:54 Community Feedback 00:07:34 Testing Out VDO Ninja: Open Source or Bust 00:09:15 Sandfly Security 00:11:37 AI Sends RAM Prices to the Stratosphere 00:19:46 DasGeek's 2025 Ultimate Geek Gift Guide 00:33:21 Linus Tech Tips vs Linux: Reaction from the Highlands 01:01:50 Outro 01:03:20 Post-Show Shenanigans Hosted by: Ryan (DasGeek) = dasgeek.net Jill Bryant = jilllinuxgirl.com
Kent Overstreet joins us for a full update on bcachefs. What's new, what's next, and the surprising upside of getting kicked out of the kernel.Sponsored By:Managed Nebula: Meet Managed Nebula from Defined Networking. A decentralized VPN built on the open-source Nebula platform that we love. 1Password Extended Access Management: 1Password Extended Access Management is a device trust solution for companies with Okta, and they ensure that if a device isn't trusted and secure, it can't log into your cloud apps. CrowdHealth: Discover a Better Way to Pay for Healthcare with Crowdfunded Memberships. Join CrowdHealth to get started today for $99 for your first three months using UNPLUGGED.Unraid: A powerful, easy operating system for servers and storage. Maximize your hardware with unmatched flexibility. Support LINUX UnpluggedLinks:
Things are getting so dire in the PC-building space that we had to revisit the subject again this week, primarily to discuss the sudden and shocking end of longtime RAM and SSD maker Crucial, with a deeper dive into the way the memory supply chain works and a glimpse into a very dark future where building your own PC might be out of reach for many. We also dig into some new reporting about the Steam Machine's HDMI output, and why open gaming platforms are going to be in conflict with proprietary HDMI standards going forward. Plus, the latest AI nonsense (and how to work around it) in Firefox and Google News.NOTE: We're working on freeing ourselves from the need for Adobe products, so bear with us if the podcast sounds a little different this week. Feedback welcome!Crucial press release: https://investors.micron.com/news-releases/news-release-details/micron-announces-exit-crucial-consumer-businessGamersNexus video: https://www.youtube.com/watch?v=9A-eeJP0J7cSteam Machine and HDMI 2.1: https://arstechnica.com/gaming/2025/12/why-wont-steam-machine-support-hdmi-2-1-digging-in-on-the-display-standard-drama/Disable Firefox AI features: https://flamedfury.com/posts/disable-ai-in-firefox/The Verge on Google News AI headlines: https://www.theverge.com/ai-artificial-intelligence/838354/googles-ai-news-bot-is-still-confused-but-no-longer-replacing-our-headlines Support the Pod! Contribute to the Tech Pod Patreon and get access to our booming Discord, a monthly bonus episode, your name in the credits, and other great benefits! You can support the show at: https://patreon.com/techpod