Pretty _____* that the team supporting security for a MILLION websites is volunteer-run. *insert word of your choice here. I like “predatory” “thankless” “exploitative” “unbelievable, yet unsurprising” “much the worst of capitalism” “sad how little financial support they receihttps://twitter.com/TimLehnen/status/1098319821714841601 …
-
-
Replying to @drnikki
To be fair this is an Open Source problem. OpenSSL, NTP, most Apache projects and more are poorly funded. Not an excuse, as an industry we need to improve this.
2 replies 0 retweets 1 like -
'Volunteer' might not be the best description either. As
@shawnmmccabe pointed out in another thread, much of the security team's time is sponsored by orgs w/ an interest keeping Drupal secure. I'm sure the members volunteer above and beyond, but it's not all altruistic.1 reply 0 retweets 3 likes -
Yah, that's really what I was getting at, looking at a lot of the sponsor companies, I sure hope those people aren't doing this stuff on their spare time.
2 replies 0 retweets 2 likes -
Yes. There are more and more companies sponsoring financially and/or providing time on the clock for contributions. This is great (and not w/o the hard work of many)! But as a whole we still have a gap.
1 reply 0 retweets 0 likes -
Think the gap ever goes away without government intervention and like universal basic income or something? As long as there is sort of the bare minimum happening, little incentive for companies to do so
2 replies 0 retweets 1 like
Unsure.. We haven't seen it in OSS yet (imo), but movements have been made with @linuxfoundation's CII and increased corporate sponsorship.
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.