Backlash mounts over NHS England's open-source code withdrawal

An open letter opposing NHS England's decision to pull its open-source software from public view amid AI hacking fears has garnered 682 signatures, including from author Cory Doctorow and former health secretary Matt Hancock. Critics argue the policy undermines transparency and security in taxpayer-funded code.

As reported earlier this week, NHS England directed staff on May 1 to privatize all existing and future open-source repositories by May 11, citing risks from AI models like Anthropic's Mythos, which recently demonstrated finding software flaws. The policy, which contradicts prior NHS standards mandating open-sourcing of public-funded code, has faced swift opposition.

A co-authored open letter has attracted 682 signatures, decrying the move as harmful to transparency and security. Signatories include Cory Doctorow and former UK health secretary Matt Hancock, who called it a 'huge mistake' on LinkedIn: 'One of the smartest things the NHS has done in recent years is open-source its code. Taxpayers paid for it, so taxpayers should benefit from it. But the practical case is just as strong: open source code is more rigorously tested, more secure, and allows the best minds anywhere in the world to build on top of it.'

Vlad-Stefan Harbuz at the University of Edinburgh, a letter co-author, used Mythos to scan existing public NHS code, uncovering severe vulnerabilities that he responsibly disclosed. 'It’s the helpers that we’re hurting by making things closed source, not the attackers,' he said.

Terence Eden, experienced in UK Civil Service data openness, echoed the sentiment, calling open-source 'non-negotiable' for trust in healthcare tools. Despite concerns, the UK AI Security Institute assessed Mythos as posing risks only to 'small, weakly defended and vulnerable enterprise systems,' with no threat to secure networks.

NHS England maintains the restriction is temporary: 'We will continue to publish source code where there is a clear need.' The UK Department of Health and Social Care did not comment.

Verwandte Artikel

Tech leaders announcing Linux Foundation's AI-powered cybersecurity initiative for open source software with major partners.
Bild generiert von KI

Linux Foundation announces AI security initiative with tech partners

Von KI berichtet Bild generiert von KI

The Linux Foundation has launched a new initiative using Anthropic's Claude Mythos preview for defensive cybersecurity in open source software. Partners include AWS, Apple, Broadcom, Cisco, CrowdStrike, Google, JPMorgan, Microsoft, NVIDIA, and Palo Alto Networks. The effort aims to secure critical software amid the rise of AI for open source maintainers.

NHS England is pulling its publicly available software from view due to concerns over AI models capable of hacking. The move reverses long-standing open-source policies for taxpayer-funded code. Security experts call the decision unnecessary and counterproductive.

Von KI berichtet

Hundreds of employees from Google and OpenAI have signed an open letter in solidarity with Anthropic, urging their companies to resist Pentagon demands for unrestricted military use of AI models. The letter opposes uses involving domestic mass surveillance and autonomous killing without human oversight. This comes amid threats from US Defense Secretary Pete Hegseth to label Anthropic a supply chain risk.

As cybersecurity agencies warned of risks in the popular open-source AI agent OpenClaw (see prior coverage), China's local governments are pushing ahead with subsidies and development plans, exemplified by Wuxi's comprehensive support program. Central authorities, including the People's Bank of China, urge caution, underscoring tensions between local enthusiasm and national security priorities.

Von KI berichtet

Indien hat eine nationale Strategie für fortschrittliche Rechensysteme im Gesundheitswesen veröffentlicht, die auf die Integration in die Architektur des Gesundheitssystems abzielt statt auf bloße Zusätze. Der Ansatz priorisiert Infrastruktur wie interoperable Aufzeichnungen und fortlaufende Überwachung, um Gerechtigkeit zu gewährleisten. Dies steht im Kontrast zu globalen Trends, bei denen Regulierungen oft hinter der Innovation zurückbleiben.

The UK government’s AI Security Institute has released an evaluation of Anthropic's Mythos Preview AI model, confirming its strong performance in multistep cyber infiltration challenges. Mythos became the first model to fully complete a demanding 32-step network attack simulation known as 'The Last Ones.' The institute cautions that real-world defenses may limit such automated threats.

Von KI berichtet

Der südafrikanische Kommunikationsminister Solly Malatsi hat den Entwurf der Nationalen Strategie für Künstliche Intelligenz zurückgezogen, nachdem erfundene Quellen in den Referenzen entdeckt wurden, die wahrscheinlich durch KI-Tools generiert wurden. Die Fehler betrafen drei der sechs Säulen der Strategie, was zu internen Untersuchungen und Versprechen zur Verantwortungsübernahme führte. Malatsi bezeichnete das Versäumnis als zentralen Beleg für die Notwendigkeit einer stärkeren menschlichen Aufsicht beim Einsatz von KI.

 

 

 

Diese Website verwendet Cookies

Wir verwenden Cookies für Analysen, um unsere Website zu verbessern. Lesen Sie unsere Datenschutzrichtlinie für weitere Informationen.
Ablehnen