Bonum Certa Men Certa

Guest Post: Enough is Enough!

By figosdev

Enough



Not even two weeks ago, Techrights founder Roy Schestowitz said:

"I have been writing for many years about threats to Linux and more recently I focused on threats to Git (development processes, centralisation, censorship etc.) as well. I think we’re now at a critical point."

And I agree. The FSF has settled into focusing too much on matters of licensing, even as they dabble with other important issues such as the "cloud" (clowncomputing) and hardware that respects your freedom. I'm concerned that long term -- years from now -- the FSF will shift its focus towards being a hardware standard almost exclusively; as the software ecosystem moves further and further from the GPL and the FSF needs a way to justify itself to sponsors and members alike.

"...as the software ecosystem moves further and further from the GPL and the FSF needs a way to justify itself to sponsors and members alike."If software becomes almost completely controlled by monopolies again, the FSF won't have any serious influence over software anymore and thus like Mozilla since Eich left, its real mission will be defunct. But their RYF campaign is both important and about something you can rarely get for free, so the FSF can focus on something meaningful and commercial; even while it backs away from its primary mission of fighting for software freedom.

For years, half a decade even -- people have complained about the threat that systemd poses to freedom. It is designed to consolidate power into the hands of a single corporation. Microsoft outlined 20 years ago that to compete with Open source, they would need to target "a process, not a company." With systemd hosted on Github, they can now do both.

The FSF recognised the threat of code being on Github even before Microsoft owned it -- now that Microsoft hosts (controls) the code used in the FSF's most popular fully-free operating systems, they continue to ignore the problems that systemd brings to the table:

- It reduces the security of every GNU/Linux distro that adopts it (it already won a Pwnie.)

- It divides the communities that adopt it (quite deliberately, but let's blame every critic, and give a divisive project a limitless benefit of the doubt.)

- It reduces the modularity in every distro that adopts it, which reduces the user's freedom.

"Microsoft outlined 20 years ago that to compete with Open source, they would need to target "a process, not a company." With systemd hosted on Github, they can now do both."The FSF in the past has talked about backdoors that Microsoft puts in their own products, but it won't talk about how systemd is hosted on servers owned by Microsoft (and that this is one more reason people shouldn't use systemd) and it doesn't acknowledge that Microsoft can now add backdoors to systemd (and every distro that uses it) themselves. Do you trust Microsoft to run secure servers, when they deliberately compromise their own operating system?

And what people are waiting for is a concrete example of this grand f***-up in the making, and all we have are smaller examples for now, but those are ignored year after year. Meanwhile, various major problems that the FSF has acknowledged in the past continue to cluster around the software weapon formerly known as an init system, and the FSF doesn't dare speak against it or advise people to even question it.

I've said for well over a year, that systemd is not the only problem -- just the biggest so far. Google has its own anti-POSIX weapon, which it is a little more honest about being a way to crush POSIX itself, in the long-standing Microsoftian tradition of "de-commoditising protocols."

POSIX more than anything, is what the free software ecosystem has in common. Sure, there are many exceptions. But POSIX is the biggest rule even if implementation is incomplete, and attacking it is a great way to win the war against free software.

Finally, these attacks are not just against the core of most operating systems. Thankfully, along with their aging flagships Trisquel and GnewSense, FSF is at least welcoming Hyperbola-- the most free FSF distro of all time, and GuixSD -- what will probably become the most customisable FSF distro of all time. In the long run these may help a lot, but for now, Trisquel continues to destroy itself.

There are additional problems of infiltration of non-profits, which the FSF will not talk about. There are additional problems of degradation of software quality and security, followed up with denial and inappropriate claims of "FUD."

There are shills in the tech press, as many as ever before, misleading the public that the FSF will not talk about. And one of the best weapons these shills have, is the facts about what is happening to the quality and reliability of free software. systemd critics have warned about those for years, only for it to fall on deaf ears.

"Do you trust Microsoft to run secure servers, when they deliberately compromise their own operating system?"The facts matter -- always. While some of the points raised by shills in the media are accurate, others actually deserve to be called "FUD." The FUD about VLC is a great example -- they tried to paint VLC as insecure, but left out that the vulnerability was actually in a 3rd-party library. That's FUD if I ever heard it, and FUD is an age-old weapon used by Microsoft to fight competitors.

The problem with KDE however, is a fine example of the sort of design problems that we used to make fun of Windows for. It turns out, some designs are so terrible that they don't just compromise the security of non-free software -- quite a few bad security practices work on multiple platforms, including FLOSS platforms, and some designs count as bad security practices themselves.

As with systemd, Windows cared far more about new features than security or good design. Their constant design compromises and lack of care dragged security and privacy into crisis, with really awful technologies like ActiveX, Office macros, Hidden extensions that let people fake safe-to-open document types that were actually executables -- you think you're opening a file in notepad but it's actually malware -- users could improve security just by turning off "Hide known file extensions" but that one stupid feature alone caused how much damage?

When you bring these historically terrible designs from Windows to GNU/Linux, they don't get better. Sure, they are more likely to get patched after the damage is done -- and that's an advantage over non-free software. So is freedom, of course! Ben Mako Hill wrote "When Free Software Isn't Better" in 2010, and all of the points are valid -- but so is the fact that people are making free software WORSE.

That's a real threat to the free software ecosystem, and the FSF refuses to talk about it. They prefer denial and compartmentalisation.

The FSF ignores free software advocates when they talk about systemd making free software worse -- they ignore other people working to make free software worse -- they ignore the infiltration of Microsoft employees into highly relevant organisations like the Linux Foundation, who control a trademark that the FSF uses on a daily basis.

"Because we made fun of Windows for all of these things, many of us got into free software as a way to get away from all these terrible designs."And the war against free software continues, with KDE adding the equivalent of autorun.inf behaviour (another of those terrible Windows designs) to its software.

As with macros, non-executable formats should never, ever execute code unless the user runs them and knows they're running them. OFF is the only secure default for such features. Windows made all sorts of exceptions to good practices along these lines, while other problems like buffer overflow vulnerabilities are more about bugs in code than terrible design (perhaps there is some small overlap.)

But terrible designs are terrible designs, and at a minimum these features should be turned off. The motives of paid/bribed shills disclosing vulnerabilities is relevant, but do not change facts -- when dangerously stupid designs are exposed, it's alright -- even a good idea -- to note the motives of shills, but it's also still relevant that the designs are stupid and dangerous.

Because we made fun of Windows for all of these things, many of us got into free software as a way to get away from all these terrible designs. The people working on free software were avoiding these pitfalls, because their priorities did not put really dumb features over general safety. Modern free software developers are increasingly of the wrong priority set, and we are already experiencing the results.

Every bad design idea brought in needs to be heavily mitigated, preferably avoided whenever reasonable, and above all not simply denied when pointed out.

Either "outsiders" are attacking the quality of well-established free software products, or "insiders" are attacking the projects themselves -- which one it is doesn't matter as much as the fact that software we rely in is being degraded and made less reliable, harder to control, harder to secure, and harder to get away from -- in an awful trend lasting for at least half a decade now.

All of these things are problems for free software, and as with any bad war -- the denial only extends the ability of the people responsible to do more damage.

By all means, if you want to suffer more, then say nothing! Or better yet, deny the facts. But don't do so and expect people to be able to offer something better, or even good to people that want freedom.

"Questions are not dealt with honestly, goals are compromised and critics are abused."I can't think of a single distro to recommend right now, because too many of the people who cluster around the only distro I've loved to use in 5 years are COMPLETE dicks. I'm not going to subject innocent people trying free software for the first time to that. Questions are not dealt with honestly, goals are compromised and critics are abused.

Things are not just critical -- we are actually losing now, more than we were a few years ago. GNU/Linux reached its height in 2014, and it's been largely downhill ever since.

"GNU/Linux reached its height in 2014, and it's been largely downhill ever since."I'm VERY grateful to the people working hard to fix this, including the Hyperbola team. Everybody else, needs to figure out whether they prefer to march this thing forwards, or backwards. It's gone backwards for half a decade -- perhaps it's time to re-consult the map?

Don't wait another five years, we've already lost those to the people actively trying to destroy our ecosystem. Now is the best possible time to turn around and start winning again -- but only if we stay honest. If we can't be honest about it, any victory will be hollow, fake and pointless. The history of free software is so much better than this, and it should be again.

Comments

Recent Techrights' Posts

Further Media Cut-downs
media reporting about the media being cut
Gemini Links 09/09/2025: Moon Eclipse and ROOPHLOCH Reports
Links for the day
Official SUSE Blog Still Uses LLM Slop (Bots) to Make Fake Articles (Marketing)
The company is all about sound bites
Companies Realise That Slop Doesn't Work as Advertised, Accordingly Dump It
"Hype dims as a country-wide survey of US corporations shows a sudden drop-off in AI use among firms with more than 250 employees."
Microsoft-Funded Lawsuits Against Critics of UEFI 'Secure Boot'
Remember that no company (or law firm) ever survives collaborations with Microsoft
It's Only the Second Week of September and Already Two Waves of Layoffs at Microsoft, Slopfarms and Microsoft-Funded Sites Spin It as "AI Investments" Rather Than Commercial Failure
A very large third one expected next week
 
statCounter Sees GNU/Linux Exceeding 10% in Bulgaria This Month
What can Microsoft still do to stop GNU/Linux?
Dark Patterns
Microsoft saying "security" is like a Convicted Felon in the White House saying "law and order".
It's Almost Fall (Autumn)
To "Facebook prison" you are bound
Bruce Schneier About "Secure Boot"
Bruce Schneier isn't a fan of "Secure Boot"
Links 09/09/2025: Microsoft Mass Layoffs Again and "RTO" (Timed Like It Serves as a Distraction From the Mass Layoffs)
Links for the day
RMS Told Microsoft to Stop 'Secure Boot' (He Even Went There to Say That), But They Didn't Listen
Dr. Stallman (RMS) assumed that speaking to sociopaths would work
What Richard Stallman Told Me About 'Secure' Boot in 2012
"if the user doesn't control the keys, then it's a kind of shackle"
Those Who Helped Microsoft Weaponise "Secure Boot" Against GNU/Linux and BSDs Are Fleeing
Microsofters doing what they do best: they evade accountability
Simple is Better, Simplicity is Power
That is "the advantage of having commodity GNU/Linux systems," an associate notes
Much Ado About Nonsense
Microsoft Lunduke is still all dramatisation and sensationalism
Current Events in France
It needs to dump Microsoft and other GAFAM (US) giants, move to Free software
Links 09/09/2025: US-Korea Tensions and Meta Whistleblowers
Links for the day
Links 09/09/2025: “Torrents of Hate” and Political Crisis in France
Links for the day
Gemini Links 09/09/2025: "Dedigitizing" and Forgejo on FreeBSD
Links for the day
Google News (Not Just Google Search) Lets Itself by Gamed by One Slopfarm - to the Point Almost Half of "Linux" News is Bot-Produced Plagiarism (LLM Slop With Slop Images)
That says a lot about what Google thinks of quality, even in Google News
Bill Gates-Funded Media Inadvertently Refutes the Microsoft Lie That in 2025 Microsoft Had Just Two Waves of Layoffs
There were about 12 rounds of layoffs so far in 2025
From theregister.co.uk to theregister.com (US) to The Register MS (Run by Microsoft Operatives) and theregister.ai
The best way to break this racket (or cycle of hype and harm) is to break the chains of funding
Open Source Initiative (OSI) Culture of Censorship Necessitates More Speech
The OSI bans dissent or people who merely point out that the OSI is abusive
How to Reach Us Discreetly (Other Than Encrypted E-mail)
We're still managing to maintain a 100% source protection record. We soon turn 19.
LLMs Are Vastly Worse Than a Waste of Energy and the Externalities Are Huge
Worse than just higher power bills for everybody
LLMs Versus Search (Not Replacing Search But Engaging in DDoS Attacks Against Web Sites That Permit Searching)
The state of the Web isn't just bad; it's utterly terrible
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, September 08, 2025
IRC logs for Monday, September 08, 2025
The UEFI 9/11 - Part IX - Shunning Old Computers (in 2023 the Certificate Was Updated/Overridden, Underlying Aim May Be Herding/Forcing People to Get TPM and Other 'Novel' Restrictions)
the "upgrade treadmill"
Rumour: Second Wave of Microsoft Mass Layoffs in September to Commence Third Week of September
That basically answers questions like, "Any specific date or time of the month?"
If Your Machine Still Has "Secure Boot" Enabled, Then Microsoft Has a de Facto Kill Switch (Even If Your Machine Doesn't Have Windows and Never Had Windows)
It is not incorrect to call UEFI 'secure boot' a "kill switch"
Gemini Links 08/09/2025: Reality, ROOPHLOCH 2025, and Writing Another Gemini Client
Links for the day
Updating Firmware is Not the Solution But Only Additional Risk, Disable "Secure Boot" Today
firmware blobs are buggy, secret, impossible to audit, and barely tested
Microsoft Tim's DevClass (Part of The Register MS/Situation Publishing) is Full of Slop
Looking at many sites that are full of slop images is becoming an eye sore and hallmark of text too likely generated by LLMs or 'assisted' (tainted) by them
Microsoft Trying to Fake Demand for Slop. At What Cost?
That's a giant demotion and broken promises
Reddit is Corporate Propaganda
To make matters worse, Reddit ousted many original moderators
Jeff Geerling Shocked to Discover Many Metrics in YouTube Are Fake (His Audience Turns Out to be Much Smaller)
Maybe self-host all videos, don't rely on Google's "FOMO" cheating (addiction based on false assumptions)
Sunlight is the Best Disinfectant and Kryptonite/Garlic to Vampires
Transparency (sometimes described by words like "Sunlight" or "Truth") is paramount
The Register MS Uses Slop in Articles About Slop
we are fairly certain it's slop or CG based on other people's work
Visiting a Web Page or a Public URL Should be Safe, Predictable, and Benign
It's probably too late to "fix" the Web
The Register MS (Situation Publishing) is Paid to Spread Mindless Hype for the "Hey Hi" Ponzi Scheme and That's a Serious Problem
"Sponsored by Zoom."
Links 08/09/2025: Burger King Cracked, Cox v. Sony Analysed
Links for the day
Gemini Links 08/09/2025: Socialist Computer Museum and GAFAM/ByteDance/TikTok-Dominated Net
Links for the day
Links 08/09/2025: Tim Crook Disappoints Apple Faithfuls and Zuckerberg Lies (Financial Fraud) for Cheeto King
Links for the day
EPO Workers Point Out that the EPO is Destroying the Planet Under the Guise of "Hey Hi" (It Also Grants Many Invalid Patents Illegally
On 12 March and 16 June 2025, staff representation met with the administration in the Local Occupational Health, Safety and Ergonomics Committee (LOHSEC) in Munich
Turn Off Microsoft's Restricted Boot ("Secure Boot")
We're still running a series on this issue
Social Control Media Sites Have Become Bot Farms (Not Limited to LLMs and Automation)
linkedin.com was nothing but trouble and losses for Microsoft
Deep in Debt With the Magnitude of Losses Quickly Growing, Microsoft "Open" "Hey Hi" Now Uses Broadcom for Vapourware, Pretending It'll Do OK Next Year
At some stage it'll collapse
You Can Tell Microsoft is in Trouble When Its Own Fans and Staff Blast it
"Microsoft sinks billions into chasing artificial intelligence fads to hype up its share price."
Multiple Undersea Cable Cuts and We're Still OK
Microsoft customers experience problems
Lawyers Who Think They Are Online Assassins Don't Deserve a Licence to Operate
they've become a laughing stock in their "sector"
Microsoft Windows Fell to 3.9% "Market Share" in Bahamas
Based on statCounter
How the European Union (EU) Fell Out of Love With Free/Libre Software
Lots of bribery
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, September 07, 2025
IRC logs for Sunday, September 07, 2025
Gemini Links 07/09/2025: Scanner, Slop, and Chadobear
Links for the day
The UEFI 9/11 is 3 Days Away
Nobody denies that bad things will happen
Google Versus Journalism
Google played a big role in the demise of news sites
Gemini Links 07/09/2025: Advertising, Decentralized Archival, and Outsourcing to Bezos
Links for the day
Certificate Authority Let's Encrypt Has Almost Gone Down to Zero, Nearly Totally Extinct in Geminispace, the Few Capsules Still Using It Are Spam/Dead/Stagnant
This represents another decrease for Let's Encrypt; the last decrease was last week
Not Much Left in News Cycles
To be very clear, this does not describe "Linux" anything; it's true in just about every facet of news, except the paid-for fake "journalism" about "hey hi" (sites getting paid explicitly to maintain or rekindle hype)
Trying to Silence Techrights Was a Huge Mistake
Peter Thiel attacked a publisher for asserting, correctly, that he was gay. Now everyone knows it.
Throwing Away "Old" Computers (Mozilla and Other Climate Deniers)
Mozilla is not leftist
The UEFI 9/11 - Part VIII - Denial of Service and Selling Us WSL (Windows) Instead of "Risky" (Prone by Breakage by Microsoft) GNU/Linux
Restricted Boot (so-called 'SecureBoot') does not improve security. It is nothing but trouble. It's meant to trouble non-Windows users. In dual-boot setups, SecureBoot is a recipe for disaster because Microsoft keeps erasing or tampering with the boot sector, to paraphrase an associate
Slop is Extremely Rare in Geminispace, Slop Images Are Unheard Of (Despite Images Being Supported)
As long as Geminispace grows in terms of domains it's safe to predict the protocol will still be used in 2029 and hence Geminispace will turn 10
Links 07/09/2025: Robodebt Class Action, Fines, and Copyright Settlement
Links for the day
Links 07/09/2025: Yle Impersonated in Social Control Media, Boat-Attacking Orcas, Midjourney Sued Again
Links for the day
Slopwatch: LinuxSecurity, Linux Journal, and the Serial Slopper
Google won't tackle the issue because Google participates not only in relaying slop but also in generating lots of it
Links 07/09/2025: Google Fines in EU and "Your Internet Access Is at Risk"
Links for the day
Gemini Links 07/09/2025: Little Brother and Corporate Theatre
Links for the day
Links 07/09/2025: More Harms of Slop and Anthropic's Nightmare Scenario (Huge Legal Liabilities for Slop)
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, September 06, 2025
IRC logs for Saturday, September 06, 2025