Bonum Certa Men Certa

Attempts to Legislate Against Free Software in Order to Elbow Such Software Aside

Video download link | md5sum a8f9ceff0ad97d546e30338a3c0ce610 Media FUD and Anti-FOSS Bills Creative Commons Attribution-No Derivative Works 4.0



Summary: There's not only a wave of attacks falsely attributing security issues to Free software (the media says "Open Source") but also new legislation in the United States, likely crafted by lobbyists, which discriminates against Free software whilst ignoring the elephant in the room, e.g. government back doors

THE corporate media, which is being fed a set of mindless talking points from corporations that fund it (e.g. by buying advertising space), is spreading a lot of Free software-hostile misinformation. It has been particularly true this month. Not a day goes by without us providing several examples in Daily Links, usually with accompanying editorial remarks/response. Thanks to gross bias and corrupting influence of money, so-called 'journalists' (stenographers) try to convince us the worst thing to security is "Open Source", using terms like "supply chain", which became fashionable (distracting from the real culprit, e.g. "MS SQL [proprietary] servers are getting hacked to deliver ransomware to orgs," as just pointed out in Help Net Security, or never noting that this "supply chain" is controlled by proprietary frameworks, e.g. GitHub or NPM, i.e. Microsoft/NSA).



"Some of these sources (e.g. Recorded Future) are connected to spy agencies and spy on IRC networks."One recent rebuttal to the torrent of FUD comes from a podcast of Josh Bressers. It's entitled "Holding open source to a higher standard", alleging that Free software is scrutinised a lot more harshly than proprietary rivals/counterparts. "Open source has always been held to a higher standard," Bressers says. "It has always surpassed this standard."

Sadly, this is the only link we can recommend that readers follow and read. We put it in Daily Links several days ago.

The annoying part was pointed out to us by an associate, alleging that Microsoft "is still milking the log4j vuln[erability] for political gain," based on shallow blog posts and reports [1, 2, 3]. "The FSF, EFF, and OSI (in their old incarnations) need to be in proactive," the associate said, and "contact with the OMB immediately."

Some of these sources (e.g. Recorded Future) are connected to spy agencies and spy on IRC networks. It's a sinister entity.

"CISA, a Microsoft booster, is involved in this."The above corresponds to S.4913 - Securing Open Source Software Act of 2022, which can be found in congress.gov under the title "Securing Open Source Software Act of 2022". It's formalised "concern trolling" in a suit with a tie. The title is misleading.

CISA, a Microsoft booster, is involved in this. To quote from one of the links above: "The Securing Open Source Software Act — sponsored by Senators Gary Peters (D-Mich.) and Rob Portman (R-Ohio) — would require the Cybersecurity and Infrastructure Security Agency (CISA) to create a “risk framework” around the use of open source code within the government and critical infrastructure agency."



"CISA would need to find ways to “mitigate risks in systems that use open source software” as well as hire experienced open source experts to address issues like Log4j. The bill also requires the Office of Management and Budget (OMB) to publish guidance for agencies about how to use open source software securely."



Based on CISA'a own list of actively-exploited flaws, Microsoft is a vast part of the problem, but S.4913 was "[r]ead twice and referred to the Committee on Homeland Security and Governmental Affairs."

"Notice how they keep mentioning "Log4j"; even about a year later! It had been patched before the public even knew about it."As if the problem is what Microsoft keeps attacking or what's replacing Microsoft.

"The overwhelming majority of computers in the world rely on open source code – freely available code that anyone can contribute to," says this page. But that's its strength, not the weakness, as I explain in the video above. Anyone can fix it, so it gets fixed very fast.

Notice how they keep mentioning "Log4j"; even about a year later! It had been patched before the public even knew about it.

Many publishers intentionally participate in a FUD campaign, e.g. Help Net Security with "Open source projects under attack, with enterprises as the ultimate targets" just a couple of days ago. That's just another wave of anti-Free software FUD; so back doors in proprietary software are OK, but this is... the end of the world? And the sky is falling? This selective attention is a propaganda technique.

Recent Techrights' Posts

Something to Celebrate in Gemini Protocol
More capsules and users join in
Apparently Confirmed: IBM Layoffs in Canada Today, Hundreds Affected
Impacting "177 people", says one person, "in Ottawa"
 
The SLAPPs From the Microsoft Strangler (and Sidekick) No Better Than Patent Trolling
one must never settle with trolls
Links 28/03/2025: Last Reminder "to Delete Your 23andMe Data", "UK's First Permanent Facial Recognition Cameras Installed"
Links for the day
Microsoft Canonical Continues Its FUD (Fear, Uncertainty, Doubt) Campaign, Reveals Google Too Sponsored It
They're paid-for lies from a Chinese company that takes GAFAM money to write puff pieces about them
Android Rises Above 76% in Mozambique, Leaving Windows in the Dust
Windows may soon be measured as smaller than Apple's iOS
IBM, Red Hat and Microsoft Probably Also Manipulate Metrics (It Helps Con the Shareholders)
Wall Street's credibility will depend on enforcement of "checks and balances"
Slopwatch: trendhunter.com and Other Pure Junk From "Google News"
The need to vet sources is hardly new; anyone can spew out anything, anywhere. There's a need for vetting.
Gemini Links 28/03/2025: Rewatching The X-Files, Slop Concerns, and NOSTR Censorship
Links for the day
Links 28/03/2025: Australia at Risk, EPO Grants Illegal Patents With Illegal Effect
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, March 27, 2025
IRC logs for Thursday, March 27, 2025
Links 27/03/2025: Obituary to a Shop, Russia Trying to Buy Time
Links for the day
Links 27/03/2025: Slop, Autosuggestions, and Nostr
Links for the day
When Windows Was Dominant (1990s) Browser Monopoly Meant MSIE, But Now Google Android is Dominant and the Web in a 'Webapps' Era Works With (or Is Designed for) Chrome-isms
We've been there before
Slopwatch: BetaNews, LinuxSecurity.com, and the Attack on Web Search Using Fake and Likely Plagiarised Pages
Changing a few words here and there won't change the fact that it's not properly authored
Links 27/03/2025: U.S. Honeybee Deaths Reach Record High, Legal Occupation Next in Line After War on Science
Links for the day
Using Courts for 'Revenge' is Always a Losing Strategy
Trying to cause someone you dislike to spend a lot of money
IBM CFO James Kavanaugh Refers to Firing of Almost 10,000 Americans as "Workforce Rebalancing" (Shifting IBM's Centre of Balance to Low-salary Contracts/Countries)
The scale of IBM layoffs is getting too large to evade WARN Notices
[Video] Dr. Richard Stallman's Keynote Speech in Kerala Finally Uploaded
In non-free format and proprietary YouTube, but perhaps that's better than nothing
Islands Are Leaving Microsoft Behind, According to statCounter
Android has had a very strong year
EPO Management Fails to Deny That the Office is Discriminating Against Women
Europe's second-largest institution isn't just exceedingly corrupt but also immoral
In Some Countries the Market Share of Vista 11 is Going Down, Not Up
despite being released in 2021
Rumour: Mass Layoffs in IBM Canada Today
Maybe later today some people from Canada will say something firmer and maybe some media will even talk about that
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, March 26, 2025
IRC logs for Wednesday, March 26, 2025
Gemini Links 27/03/2025: X-Files' "Kill Switch", Orlando, and ASN (Autonomous System Number) 'Hack'
Links for the day
Links 26/03/2025: Healthcare Cuts and Turkey's Own "2025 Project" (Culling Opposition)
Links for the day
LLM Slopfarm: A Site's Last Incarnation Before Throwing in the Towel, Going Offline Permanently
A lot of coverage that claims to be about Finland is chatbot-generated nonsense or poorly-plagiarised work
Microsoft Canonical Pays IDG to Spread FUD (Fear, Uncertainty, Doubt)
this seems a tad exploitative and reminds us of the time Novell kept telling companies that using anything other than SUSE was dangerous
Gemini Links 26/03/2025: GTD, Zenshuu, and Geminispace Community
Links for the day
Links 26/03/2025: Media's Failures, Arrests of Journalists, Limitations of End-to-End Encryption
Links for the day
LLM Slop (Lots of It Spewed Out by Microsoft) Versus Linux
Microsoft is a very, very evil company. It doesn't mind destroying the Web if there's a chance it'll make a buck in the process or mess up people's brains (in Microsoft's favour).
Slopfarms (Sites That Only Ever Publish LLM Slop) Are Killing Google News
pair of slopfarms still propped up by Google News
Microsoft's Serial Strangler's Law Firm Has a Long History of Fronting for People Who Do Bad and/or Illegal Things
Whose terrible idea was this?
Novell and Microsoft Apologist/Booster Bruce Byfield Writing About the FSF is a Recipe for Problems
Totally not shoehorning some agenda
Looking Forward to the Fall of UPC and Revocation of the Unified Patent Court (UPC) Agreement, Which Was Always Illegal and Unconstitutional
We'll try to keep abreast of any progress in this case
Slopwatch: Google News, LinuxSecurity.com, and the General Demise of the Web
many supposed or so-called "news" pages are just spewed out by some chatbots (or tools which help plagiarise original articles without getting caught; detection gets harder)
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, March 25, 2025
IRC logs for Tuesday, March 25, 2025