Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile
Brian Fox @[email protected]

@brian_fox

Co-Founder & CTO, Sonatype. Former Chair, Apache Maven, BSA Scoutmaster, Amateur Radio Operator Creator of Maven-dependency-plugin and Maven-enforcer-plugin

ID: 14690551

linkhttps://blog.sonatype.com/ calendar_today07-05-2008 19:18:21

2,2K Tweet

1,1K Takipçi

274 Takip Edilen

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

Join us on June 12th at 10 AM for an exclusive webinar on adopting AI/ML/LLM into a firm’s software development strategy. Jaime Whitehouse, Product Manager at Sonatype, leads the session, supported by FINOS. Save your spot now! share.sonatype.social/5wtcc

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

#Malware alert! #Sonatype researchers found a new malicious #PyPI crypto-stealer targeting Windows users. We're committed to protecting the software supply chain while empowering developers to build secure software. Read more on our blog. #cybersecurity share.sonatype.social/69yhw

Sonatype (@sonatype) 's Twitter Profile Photo

Sonatype’s two decades of experience have shaped our unique perspective on software development. Dive into our latest blog, "The Overview Effect: Two Decades of Unique Perspective," to gain valuable insights. Read more now! bit.ly/4eunXKd #OpenSource #SoftwareSupplyChain

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

Sustainability of critical oss infrastructure is a pressing issue we must address. Shockingly, only 1% of Maven Central users consume 83% of the bandwidth, many being large organizations that should have better supply chain practices. Taking steps to curb this abuse is crucial.

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

I had a great time talking with CRob about the world of vulnerabilities on the OpenSSF podcast "What’s in the SOSS?" My episode is live now — check it out! hubs.la/Q02GK53s0

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

I’ve spent much time thinking about why organizations struggle to understand the implications of the rise in malicious oss compared to typical vulnerabilities. It ultimately comes down to psychology. In this article, I explore the psychological barriers that prevent effective

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

Recent incidents combine to provide a stark discrepancy in share of risk from consumers and vendors. Also, what does shipping and a bridge disaster have to do with a global IT outage grounding airlines? Read on: linkedin.com/pulse/tale-two…

Recent incidents combine  to provide a stark discrepancy in share of risk from consumers and  vendors. Also, what does shipping and a bridge disaster have to do with a  global IT outage grounding airlines?

Read on:

linkedin.com/pulse/tale-two…
Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

Why is X spying on me? Every time I open the page today, my mac tells me my mic is being used. I close the X tab and it goes away. This has happened multiple times today.

Gradle (@gradle) 's Twitter Profile Photo

#BuildPropulsionLab at #CommunityOverCode 2024 with Brian Fox Brian Fox @[email protected] on the 10th annual State of the Supply Chain Security Report! x.com/i/broadcasts/1…

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

It’s a wrap on AllDayDevOps’ 24 hours of live-streamed content hosted by Sonatype! The good news is that all sessions are now available on demand. I had the privilege of joining three fantastic panels of experts to explore the recent "trifecta" of research into open source

Lonnie Middleton (@lonniedoingcode) 's Twitter Profile Photo

After 6 hours with Artifactory: I can't pull the artifacts that I just pushed, and I can't do anything at all except on localhost. After 2 hours with Nexus: Everything works from everywhere. Welp, I guess I'm using Nexus. Sonatype

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

Get streaming.tv at hyatt is down now for two days. It’s clearly an ssl certificate that likely expired. Shouldn’t be such a long outage…

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

Free isn’t free: the infrastructure behind open source has real costs, and it’s time we aligned usage with responsibility. This morning we jointly launch a new blog and open letter on sustainable stewardship. sonatype.com/blog/from-abus…

Brian Fox @brian_fox@fosstodon.org (@brian_fox) 's Twitter Profile Photo

Come on man. 100% of my flights on SWA in the past weeks have had non useable WiFi. Inversely 100% of my non SWA flights in the same time have had blazing fast connection. I fly a lot. Mostly on SWA. Time is money. Not being able to work is very expensive. Southwest Airlines