Open Source
Discover expert analysis on open source with news, features and insights from the team at IT Pro.
-
Compromised open source package pushed malicious Elementary CLI release to developersNews The open source Elementary CLI tool has more than one million monthly downloads
By Ross Kelly Published
News -
Axios npm compromise highlights growing software supply chain risks, experts warnNews Cyber criminals exploited a hijacked maintainer account to compromise one of the world's most widely used JavaScript libraries
By Emma Woollacott Published
News -
The pros and cons of open source AI for businessIn-depth Leaders face a choice between frontier freedom and cloud lock-in without thr right adoption strategy
By Keri Allan Published
In-depth -
Open source is booming in Europe as enterprises look to strengthen digital autonomyNews Concerns over lock-in, rising prices, and vendor reliance are fueling a shift to open source alternatives
By Ross Kelly Published
News -
Big tech is clamping down on open source ‘AI slop’ reportsNews Firms including Microsoft, OpenAI, and Google have pledged funding to bolster open source security and cut down on slop reports
By Emma Woollacott Published
News -
Notepad++ hackers remained undetected and pushed malicious updates for six monthsNews Hackers remained undetected for months and distributed malicious updates to Notepad++ users after breaching the text editor software – here's how to check if you've been affected.
By Ross Kelly Published
News -
The open source ecosystem is booming thanks to AI, but hackers are taking advantageNews Analysis by Sonatype found that AI is giving attackers new opportunities to target victims
By Emma Woollacott Published
News -
Open source project scraps bug bounty scheme over AI 'slop' submissionsNews Curl isn’t the only open source project inundated with AI slop submissions
By Ross Kelly Published
News -
Retailers ramp up automation to tackle supply chain challengesNews Companies are moving AI projects from pilot to production across the board, with a focus on open-source models and software, as well as agentic and physical AI
By Emma Woollacott Published
News -
A concerning number of Log4j downloads are still vulnerable four years onNews Despite safe Log4j versions having been available for years, many organizations haven't introduced them
By Emma Woollacott Published
News -
Anthropic says MCP will stay 'open, neutral, and community-driven' after donating project to Linux FoundationNews The AAIF aims to standardize agentic AI development and create an open ecosystem for developers
By Ross Kelly Published
News -
Making the case for open source AI adoptionAnalysis Open source AI models often perform on-par with closed source options and could save enterprises billions in cost savings, new research suggests, yet uptake remains limited.
By Ross Kelly Published
Analysis