<img height="1" width="1" style="display:none" src="https://www.facebook.com/tr?id=705633339897683&amp;ev=PageView&amp;noscript=1">

Featured

In the wake of the xz utils hack, two-thirds of maintainers are less trusting of contributors

In mid-2024, Tidelift fielded its third survey of open source maintainers. More than 400 maintainers responded and shared details about their work, ...
Chris Grams
by Chris Grams
on October 15, 2024

Recap: Life as an open source maintainer after xz

By Amy Hays on May 15, 2024
It’s been six weeks since a developer uncovered a hack of epic scope in the popular Linux compression library called xz utils (previously known as ...

Is xz actually an open source success story?

By Jeremy Katz on April 17, 2024
It’s been just over two weeks since we all learned about a backdoor that had been slowly and carefully placed in the xz-utils library over a period ...

Maintainer panel: Hear from maintainers in a post-xz utils backdoor world

By Amy Hays on April 15, 2024
A few weeks ago, a very sinister, sophisticated hack was uncovered in an obscure but ubiquitous Linux library called xz utils.

xz utils hack: what is it?

By Luis Villa on April 2, 2024
Late last week, a developer noticed some unusual behavior on their computer, investigated it, and uncovered a hack of epic scope, in an obscure but ...

Don't miss the latest from Tidelift

Filter by Topic