Linux Foundation announces $12.5m for open source security

The Linux Foundation has secured $12.5 million in grants from AI companies to bolster open source software security. The funding addresses maintainers overwhelmed by AI-generated vulnerability reports. It will be managed by Alpha-Omega and the Open Source Security Foundation.

The Linux Foundation announced $12.5 million in grants on March 19, 2026, aimed at strengthening open source software security. This initiative, managed by its security-focused projects Alpha-Omega and the Open Source Security Foundation (OpenSSF), targets the challenge of open source maintainers struggling with a surge of security findings from AI tools—some legitimate, others hallucinations generated at a scale they cannot handle alone. Contributing AI companies include Anthropic, Google, Google DeepMind, GitHub, Microsoft, and OpenAI. The projects plan to collaborate directly with maintainers to develop practical security tooling that integrates into existing workflows, helping them manage rising demands without being overwhelmed. Greg Kroah-Hartman, a Linux Foundation Fellow and Linux kernel maintainer, noted the issue's validity, referencing a prior incident. In 2025, cURL's bug bounty program on HackerOne faced a flood of AI-generated reports lacking proper research. cURL creator Daniel Stenberg warned that submitters of such reports would be publicly named, ridiculed, and banned, but this did not deter them. By January 2026, the program had received 20 such submissions in its first few weeks, leading to its complete shutdown. Proponents view the grants as a constructive step, though not a full solution to AI-generated noise in open source security efforts.

Mga Kaugnay na Artikulo

Tech leaders announcing Linux Foundation's AI-powered cybersecurity initiative for open source software with major partners.
Larawang ginawa ng AI

Linux Foundation announces AI security initiative with tech partners

Iniulat ng AI Larawang ginawa ng AI

The Linux Foundation has launched a new initiative using Anthropic's Claude Mythos preview for defensive cybersecurity in open source software. Partners include AWS, Apple, Broadcom, Cisco, CrowdStrike, Google, JPMorgan, Microsoft, NVIDIA, and Palo Alto Networks. The effort aims to secure critical software amid the rise of AI for open source maintainers.

The Linux Foundation announced plans to create the Tokenomics Foundation, which will develop open standards for measuring AI token consumption costs. The initiative partners with the FinOps Foundation and has support from twelve major organizations. It will formally launch next week in San Diego.

Iniulat ng AI

A surge in AI written code submissions is overwhelming volunteers who maintain open source software, leading some to quit the field entirely.

The Linux 7.1 kernel now includes new documentation that defines security bugs more clearly. It also sets guidelines for handling reports generated with artificial intelligence tools.

Iniulat ng AI

The Linux Foundation has made the full schedule available for Open Source Summit Korea. The event will take place August 11-12 in Seoul and features more than 70 sessions.

Gumagamit ng cookies ang website na ito

Gumagamit kami ng cookies para sa analytics upang mapabuti ang aming site. Basahin ang aming patakaran sa privacy para sa higit pang impormasyon.
Tanggihan