It is time for the third installment Tidelift state of the open source maintainer survey!
Most software engineers who maintain an open-source-using application for their organization have a story of an epic software “fire” they’ll never ...
It’s been six weeks since a developer uncovered a hack of epic scope in the popular Linux compression library called xz utils (previously known as ...
Recently, Tidelift co-founder and CEO Donald Fischer sat down with host of the Fintech Open Source Foundation (FINOS) Open Source in Finance podcast, ...
As we count down to this year’s Upstream, we’ll be looking back at Upstream moments from years past. Discover how topics may have changed and how ...
A new report just out last week from the Digital Forensic Research Lab (DFRLab) at the Atlantic Council found that open source projects with funding ...
It’s been just over two weeks since we all learned about a backdoor that had been slowly and carefully placed in the xz-utils library over a period ...
As part of the xz discussion, some asserted that “paying maintainers doesn’t work—we tried to give people money and they wouldn’t take it.” Suffice ...
A few weeks ago, a very sinister, sophisticated hack was uncovered in an obscure but ubiquitous Linux library called xz utils.