Bonum Certa Men Certa

New Wave of 'FOSS is Dangerous' Articles and the Microsoft Connection

Skulls



Summary: Misinformation and selective reporting on software risks sometimes come from Microsoft-tied firms

There seems to have been a growing level of deception/reality distortion field, seeking to establish a consensus that FOSS is dangerous to adopt (security and compliance are the two strands). This distortion of the truth, or accentuation of perceived pitfalls, is nothing new. The recent growth, however, is noteworthy. Maybe it is proportional to the growth of FOSS, which is viewed as an opportunity for proprietary software houses like Black Duck to cash in on. Not just Microsoft-connected entities are part of this (Black Duck is Microsoft-connected in several ways). Lesser known firms, White Source and others, are starting to show up. We do not know the professional background of the managers there, but none of these firms can be described as FOSS-oriented.



"This distortion of the truth, or accentuation of perceived pitfalls, is nothing new."Univa and Sonatype are some of the examples we named more recently because they helped generate FOSS-hostile coverage using the 'risk' theme. I saw about 4 such articles in the past 2 weeks (omitting stories about the same topic), which is far more than the average. I've watched this closely for almost a decade.

IDG repeatedly posted (in several sites) some article which cites/references/promotes OpenLogic, a company run by a Microsoft veteran who started it. It also quotes him and describes his ventures as follows: "Steven Grandchamp has seen companies face serious problems because of lax oversight of open-source software."

"A lot of information about FOSS these days is being manufactured by proprietary entities, some of which are founded and run by people from Microsoft."So he worked for Microsoft and then decided to change careers to focus on proprietary software which makes FOSS look bad. The proprietary code analysers are being openwashed by stating that they are being used on FOSS and one report about it says: "The service, which began as the largest public-private sector research project focused on open source software integrity, was initiated between Coverity and the U.S. Department of Homeland Security in 2006 and is now managed by Coverity."

Coverity is not a foe of FOSS and much of its output has been favourable to FOSS. However, let us not lose sight of motives, which are quite independent from truth. A lot of information about FOSS these days is being manufactured by proprietary entities, some of which are founded and run by people from Microsoft. Opportunism? That might be an understatement. They mostly legitimise the fiction that proprietary software comes with no risk (e.g. licenses expiration, projects dying, going the wrong way), whereas it's FOSS -- only FOSS -- that involves high risk.

Recent Techrights' Posts

Topics We Lacked Time to Cover
Due to a Microsoft event (an annual malware fest for lobbying and marketing purposes) there was also a lot of Microsoft propaganda
EPO Education: Workers Resort to Legal Actions (Many Cases) Against the Administration
At the moment the casualties of EPO corruption include the EPO's own staff
 
Links 22/11/2024: Dynamic Pricing Practice and Monopoly Abuses
Links for the day
Microsofters Try to Defund the Free Software Foundation (by Attacking Its Founder This Week) and They Tell People to Instead Give Money to Microsoft Front Groups
Microsoft people try to outspend their critics and harass them
[Meme] EPO for the Kids' Future (or Lack of It)
Patents can last two decades and grow with (or catch up with) the kids
Gemini Links 22/11/2024: ChromeOS, Search Engines, Regular Expressions
Links for the day
This Month is the 11th Month of This Year With Mass Layoffs at Microsoft (So Far It's Happening Every Month This Year, More Announced Hours Ago)
Now they even admit it
Links 22/11/2024: Software Patents Squashed, Russia Starts Using ICBMs
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, November 21, 2024
IRC logs for Thursday, November 21, 2024
Gemini Links 21/11/2024: Alphabetising 400 Books and Giving the Internet up
Links for the day
Links 21/11/2024: TikTok Fighting Bans, Bluesky Failing Users
Links for the day
Links 21/11/2024: SpaceX Repeatedly Failing (Taxpayers Fund Failure), Russian Disinformation Spreading
Links for the day
Richard Stallman Earned Two More Honorary Doctorates Last Month
Two more doctorate degrees
KillerStartups.com is an LLM Spam Site That Sometimes Covers 'Linux' (Spams the Term)
It only serves to distract from real articles
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, November 20, 2024
IRC logs for Wednesday, November 20, 2024
Gemini Links 20/11/2024: Game Recommendations, Schizo Language
Links for the day
Growing Older and Signs of the Site's Maturity
The EPO material remains our top priority
Did Microsoft 'Buy' Red Hat Without Paying for It? Does It Tell Canonical What to Do Now?
This is what Linus Torvalds once dubbed a "dick-sucking" competition or contest (alluding to Red Hat's promotion of UEFI 'secure boot')
Links 20/11/2024: Politics, Toolkits, and Gemini Journals
Links for the day
Links 20/11/2024: 'The Open Source Definition' and Further Escalations in Ukraine/Russia Battles
Links for the day
[Meme] Many Old Gemini Capsules Go Offline, But So Do Entire Web Sites
Problems cannot be addressed and resolved if merely talking about these problems isn't allowed
Links 20/11/2024: Standing Desks, Broken Cables, and Journalists Attacked Some More
Links for the day
Links 20/11/2024: Debt Issues and Fentanylware (TikTok) Ban
Links for the day
Jérémy Bobbio (Lunar), Magna Carta and Debian Freedoms: RIP
Reprinted with permission from Daniel Pocock
Jérémy Bobbio (Lunar) & Debian: from Frans Pop to Euthanasia
Reprinted with permission from Daniel Pocock
This Article About "AI-Powered" is Itself LLM-Generated Junk
Trying to meet quotas by making fake 'articles' that are - in effect - based on plagiarism?
Recognizing invalid legal judgments: rogue Debianists sought to deceive one of Europe's most neglected regions, Midlands-North-West
Reprinted with permission from Daniel Pocock
Google-funded group distributed invalid Swiss judgment to deceive Midlands-North-West
Reprinted with permission from Daniel Pocock
Gemini Links 20/11/2024: BeagleBone Black and Suicide Rates in Switzerland
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, November 19, 2024
IRC logs for Tuesday, November 19, 2024