• boincboy3000@feddit.org
    link
    fedilink
    Deutsch
    arrow-up
    2
    ·
    edit-2
    32 minutes ago

    Hm i never coded a line in my life, but i always wondered so honest question to the experts here: is it realistic that someone codes security back doors so hidden in other bad or wrong documented code, that nobody recognizes it in OSS community? I mean code is getting more complicated and specialized, dont you need more and more human resources (more than one person and hopefully not all with a bad intention) to check over that code? If im correct you shouldnt let more code into your software than the community is able to check an validate several times… Doesnt mean it has to be russians that need to be excluded idk

    • sunbeam60@lemmy.one
      link
      fedilink
      arrow-up
      1
      ·
      10 minutes ago

      There will be a million security issues across all OSS. Some of it will be intentional; if so definitely don’t expect it to be a “findable” back door. It will be a set of vulnerabilities across several projects, that when combined allow the perpetrators privilege-escalations or a known path through a security system. Removing “Russians” from contribution doesn’t actually stop that, everyone can use a VPN and work as an American or whatever, but it does send a signal.

  • communism@lemmy.ml
    link
    fedilink
    arrow-up
    8
    arrow-down
    1
    ·
    2 hours ago

    Everyone who disagrees with me is a paid russian troll of course. Nobody would oppose blacklisting people based on nothing but their nationality unless they were getting paid for it.

  • Arelin@lemmy.zip
    link
    fedilink
    arrow-up
    17
    arrow-down
    4
    ·
    2 hours ago

    He’s gonna ban american and “israeli” maintainers too then, I guess?

  • Mihies@programming.dev
    link
    fedilink
    arrow-up
    19
    arrow-down
    6
    ·
    3 hours ago

    I’d really like to see the criteria for delisting people, though. As Russia is not the only one waging wars, there are worse countries out there. I guess it all boils down to Linus being from Finland.

    • Alsephina@lemmy.ml
      link
      fedilink
      English
      arrow-up
      14
      ·
      2 hours ago

      Yeah the kernel might end up being forked if this shit keeps going. Sanctions affecting open source software like this was not something I expected…

  • jol
    link
    fedilink
    arrow-up
    36
    arrow-down
    10
    ·
    4 hours ago

    Linus has never been the best communicator, but he usually speaks the truth. But this is just bonkers and wrong. Not everyone living in Russia has “ties with Russia” other than “they were born there”. If this is about sanctions, he could have still just told them that. But instead he just disrespected contributors completely and then double down in it by being xenophobic.

    • Jumuta@sh.itjust.works
      link
      fedilink
      arrow-up
      7
      arrow-down
      1
      ·
      edit-2
      1 hour ago

      It’s really disappointing seeing Russian contributors being disrespected like this, the regime that rules Russia wasn’t entirely their fault, and allegiance, nationality, and ethnicity are all clearly different things

      Also, wouldn’t a state sponsored Russian hacker pretend to be from the US or something anyway? No way they’d contribute code as a Russian, that’d just increase others’ suspicion

      I agree with Linus a lot too but I strongly disagree here. I hope he’s just being made to say this because of government policies

      • jol
        link
        fedilink
        arrow-up
        6
        arrow-down
        1
        ·
        1 hour ago

        And the most dangerous part here is the whole rethoric of “if you disagree, you are a Russian shill”.

    • Goun@lemmy.ml
      link
      fedilink
      arrow-up
      17
      arrow-down
      5
      ·
      4 hours ago

      I don’t understand how sanctions can impact free software, tbh, what’s free about this? This leaves a weird taste, I have to admit.

  • menemen@lemmy.ml
    link
    fedilink
    arrow-up
    15
    arrow-down
    5
    ·
    4 hours ago

    Man, I wish he’d leave the communication to someone else. He is so, so bad at it. And this isn’t the first time

    The way he attacks critics puts himself in a bad light. But much more importantly, I read this and am still unsure if he has administrative/legal reason, security reasons or political reasons…

    If I’d work in Russian propaganda, I’d love this so much. Hope this will not cause disruption in the community.

  • blame [they/them]@hexbear.net
    link
    fedilink
    English
    arrow-up
    11
    arrow-down
    2
    ·
    5 hours ago

    the comments on the article started off pretty good but pretty quickly devolved into a cancerous combination of NAFO and Hasbara.

  • umbrella@lemmy.ml
    link
    fedilink
    arrow-up
    52
    arrow-down
    13
    ·
    8 hours ago

    so are we okay with banning development time donated to foss because of nationality?

    are these people found to support heinous shit or is this just wartime shenanigans?

      • umbrella@lemmy.ml
        link
        fedilink
        arrow-up
        12
        arrow-down
        13
        ·
        edit-2
        5 hours ago

        finland has pretty bad, climate-change-exploitation-fucking-over-the-third-world dealings in my country, despite enforcing seemingly very good stuff inside their own borders so meh, id argue they aint close to the victims they make out to be. some would argue that as a consequence for having a strong socialist influence.

        i have mixed feelings about them as a country, but i recognize there are plenty of good (and even well known good) people on there because of the aforementioned good stuff, linus included. for different but not that dissimilar reasons i think contemporary russian citizens should not be blanket banned from helping everyone out.

  • somegeek@programming.dev
    link
    fedilink
    arrow-up
    13
    arrow-down
    12
    ·
    3 hours ago

    One of the worst news I’ve read lately.

    Why aren’t Israeli maintainers removed? Oh because linux is basically owned by IBM now.

    The linux kernel isn’t free anymore. It’s open source, but not free.

  • JustMarkov@lemmy.ml
    link
    fedilink
    English
    arrow-up
    29
    arrow-down
    12
    ·
    7 hours ago

    I was expecting an adequate response, but this… I’ll just say I’m very disappointed.