Bonum Certa Men Certa

Microsoft-Linked Codenomicon and Bluebox in the Business of Smearing FOSS/Linux/Android

Name tag
Embracing and extending, but not yet extinguishing



Summary: Codenomicon and Bluebox, two companies with strong Microsoft links, fill the media with negative articles about Android

"M

icrosoft marketing again" is what our reader labeled it. Brett Winterford, who played ball for OOXML after Microsoft had given him gifts, smears Android using a Microsoft buddy, Codenomicon, the company that hyped up an OpenSSL bug, or as this new article puts it:

Codenomicon, which coined the term "Heartbleed" upon discovering the OpenSSL flaw, will name and shame app developers later this month when it publishes its findings on those that neglected robust security practices.


Codenomicon did not discover the bug (a man from Google did, but some give both credit); Codenomicon did the marketing, registered a domain, and spread the "Heartbleed" brand.

The "Heartbleed" marketing is still floating in the media, this time because of Venafi, keeping it in the media nearly 4 months later. What we basically have here is Codenomicon making a comeback, this time making derogatory claims about Android.

A reader of ours says that "it makes sense. I have trouble tracking all the names though. If one is cynical, pretty much 100% of the pro-Microsoft or anti-Linux (especially anti-FOSS) writings can be tracked to direct Microsoft influence. One wonders society can do with all the "former" employees, especially the managers."

Codenomicon's board is managed by a man from Microsoft, one of Microsoft's chief executives, for those who have not been keeping up.

Another company like this is Bluebox, whose Microsoft connection we covered here before. It is a Microsoft partner created and managed by a Microsoft guy. Now it has some dirt to throw on Android, too.

We first saw that covered by the FOSS-hostile Dan Goodin (he still only covers FOSS/Linux security issues, ignoring any proprietary software issues) and then we saw this in the Bill Gates-funded "The Guardian" and BBC, which like to chastise only Google over things that Microsoft does (and worse). This is definitely some of the earliest coverage, maybe coordinated ahead of distribution, leading other sites to covering it, only later on, even though the issue was already fixed. Later on we saw a report saying that it "Could Put Millions in Jeopardy" (key word is "could") and Microsoft-friendly sites joined in, making a huge fuss about a bug that was patched very quickly.

"One need to keep track of who's who and where the money travels."While it is hard to show a conspiracy to smear Android, like Microsoft asking its former employees and affiliates who run Codenomicon and Bluebox to fill the media with negative coverage about Android bugs, we do need to consider such possibilities based on evidence that exists. It is clear who these companies are loyal to; it's no secret, just follow the money. Why don't they cover the loads of bugs in Windows or even the back doors, which are there by design?

The media too should be held accountable here, as we know that Microsoft bribes publishers like O'Reilly (we gave examples for years) and based on fresh complaints from the President of OSI [1], it is true that OSCON (O'Reilly's so-called 'open source' conference) has become more of a Microsoft-subsidised breeding ground for moles and misdirection (sponsored by Microsoft in exchange for stage time/room).

When living in a spin zone (not spin-free zone), where many of the messengers are funded by Microsoft, it would be unwise to take and accept everything at face value. One need to keep track of who's who and where the money travels.

Related/contextual items from the news:



  1. SAP embraces opens source -- sort of
    At the annual OSCON (Open Source Convention) last week, those stuck in a worldview of open source from the previous decade would have suffered serious cognitive dissonance.

    First, Microsoft was an anchor of the conference, with a full-scale display from Jean Paoli's subsidiary Microsoft Open Technologies. As I walked past I repeatedly heard people expressing shock that Microsoft was there at such scale. Wholehearted support for open source still largely stops at the boundaries of Microsoft's Azure cloud offering, but plenty of staff people with genuine open source credentials were showing their wares. Microsoft's journey is definitely progressing.




Recent Techrights' Posts

The End of FOSSPost (fosspost.org), It Has become an LLM Slopfarm Like FOSSLinux
These sites will never get lucky with slop. These experiments always end badly.
 
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, May 22, 2026
IRC logs for Friday, May 22, 2026
Links 22/05/2026: Ebola Crisis and Samsung Averts a Walkout With Big Bonuses
Links for the day
Links 22/05/2026: Inflation Fears and Thailand Tightens Visa Rules for Tourists From Dozens of Nations
Links for the day
EPO Staff Representation Speaks of This Week's Discussion With the EPO's Budget and Finance Committee (BFC) Amid Mass Strikes
The Central Staff Committee's outline (prepared in a rush) or the "flash report"
SLAPP Censorship - Part 84 Out of 200: New Legislation Against SLAPPs on the Way (After We Reached Out to Ministers)
They dealt with the matter individually too, but we won't share this in public, at least not at this time
The Corrupt Lecture the Non-Corrupt - Part XXX - Where Was "The Ethics and Compliance Team" When the Family of EPO President Campinos Was Caught Doing Cocaine?
It remains to be seen if national delegates will tolerate this in future meetings
Gemini Links 22/05/2026: Esperanto Music History, Suspicious Adoption of Signal, and Unauthorised LLM Slop in Code
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, May 21, 2026
IRC logs for Thursday, May 21, 2026
Links 21/05/2026: "Declining America" and Why Slop 'Code' is Made to Fail
Links for the day
Techrights and Tux Machines Subjected to Cyberattacks for Several Weeks
In the past I spoke to the cybercrime unit of British Police. Maybe it's time to do so again.
The Register MS Has Become a 'Content' Farm Promoting Slop for Hostile Corporations
Now they call it "PARTNER CONTENT" - not "SPONSORED" - as if semantics make the difference
Latest Example of Widespread Fake Assertions (False News) About "Hey Hi"
The false narrative of "Hey Hi layoffs"
Links 21/05/2026: Facebook Rewarded With Tax Breaks to Destroy the Environment and Cause Global Warming, Shortages, Pollution; SpaceX (SPCX) Continues Losing Billions of Dollars
Links for the day
Codecs and Software Patents - Part VIII - GNU Audio/Video Team Has Chosen the AV1 Video Codec and It Explains Why (They've Researched Their Options)
AV1 video codec will be used to encode and share GNU videos online
Dr. Stallman Helps Establish Free Software Advocacy Outside the Free Software Foundation (FSF) as Well
The ideals or principles of Free Software needn't be centralised or monopolised; they can be federated
22 Years of Tux Machines and a Community Stronger Than Ever Before
We've already received some feedback from the community and improved it accordingly
Microsoft Under Investigation for Breaches of Law in the UK
Just like the Microsofters
More Microsoft Layoffs on the Way (June and July 2026)
with or without PIPs
LWN Sponsored by the Linux Foundation (Monopolies)
We must be able to casually point this out
The Corrupt Lecture the Non-Corrupt - Part XXIX - European Patent Office (EPO) Tells Staff "Speaking up" is Good, But Not When the "Brother-in-law" of EPO's President Does Cocaine
Do we still have a functioning democracy and potent press?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, May 20, 2026
IRC logs for Wednesday, May 20, 2026
Gemini Links 21/05/2026: Immigration, Slop, and Slop 'Code' Suggestions Infesting Code Repositories
Links for the dayGemini Links 21/05/2026: Immigration, Slop, and Slop 'Code' Suggestions Infesting Code Repositories