
Codeberg banned LLM-generated projects, and Debian is voting on the same question
Codeberg's terms now bar projects that mostly consist of AI-written code. Debian's open resolution puts three answers on one ballot. Provenance is the crux.

Codeberg's terms now bar projects that mostly consist of AI-written code. Debian's open resolution puts three answers on one ballot. Provenance is the crux.

Microsoft's 2011 Secure Boot certificates started expiring in June 2026. Here's what breaks on Windows and Linux, and the one update that fixes it.

Flipper Devices says the Flipper Zero isn't abandoned, but a 700 KB flash limit is pushing firmware work onto the community while its team builds new hardware.

LibrePods reverse-engineers Apple's private AirPods protocol to bring ear detection, battery status, and noise control to Android and Linux.

Intel archived its Open Ecosystem Community and Evangelism hub and dozens of open-source projects as cost cuts reshape what one of Linux's biggest backers funds.

Tesco is moving 40,000 workloads off VMware and suing Broadcom for £100M, the loudest signal yet in the post-acquisition exodus toward KVM, Proxmox, and OpenStack.

SteamOS 3.8 is stable, with a new kernel, Steam Machine support, and official builds for the ROG Ally and other handhelds. The Windows monopoly on handhelds just cracked.

Microsoft's Coreutils for Windows brings native ls, cp, and grep to Windows, built on the Rust uutils project. Here's what it is and why the Rust rewrite matters.

Vivado 2026.1 introduces a five-tier licensing model. The free BASIC tier supports Windows only; Linux requires the paid CORE tier. FPGA hobbyists are pushing back.

Sebastian Wick and Adrian Vovk pitched systemd-appd at Linux App Summit on May 17. The cost of nested sandboxing is a hard systemd dependency in mainline Flatpak.

Linux 6.14 merged the NTSYNC driver Elizabeth Figura wrote at CodeWeavers. SteamOS 3.7.20 loads it by default; Wine 11 went mainline on it. Here's what changed.

Dirty Frag chains two page-cache flaws in the ESP and RxRPC subsystems into a deterministic privilege escalation that hits every major distro. A PoC exploit is public.

The 313 Team flooded Canonical's infrastructure starting May 1, blocking apt updates and the Ubuntu security API just as admins needed both.

CVE-2026-31431 chains AF_ALG and splice() to write into the page cache of /usr/bin/su. Xint Code disclosed it on April 29, nine years after the bug shipped.

Jakub Kicinski's networking pull request removes 138,161 lines of decades-old code. Kernel maintainers say LLM-generated bug reports made the old subsystems un-maintainable.

Canonical released Ubuntu 26.04 'Resolute Raccoon' on April 23. It's the first LTS without X11, ships kernel 7.0 and GNOME 50, and sets post-quantum SSH on by default.