Skip to content
Tech News
← Back to articles

Linux Foundation Launches Akrites To Coordinate AI-Driven Open Source Security

read original more articles
Why This Matters

The Linux Foundation's launch of Akrites marks a significant step in enhancing open source security through AI-driven vulnerability management and industry collaboration. This initiative aims to streamline vulnerability disclosure and remediation, helping protect critical software infrastructure from exploitation. Its success could set a precedent for more coordinated and proactive security efforts across the tech industry.

Key Takeaways

BrianFagioli writes: The Linux Foundation has announced Akrites, a new initiative to coordinate vulnerability disclosure and remediation for critical open source software as AI dramatically speeds up vulnerability discovery. Founding members include AWS, Google, Microsoft, OpenAI, Red Hat, NVIDIA, IBM, Cisco, JPMorganChase, and others. Akrites will provide a shared Security Incident Response Team (SIRT), a standardized coordinated vulnerability disclosure process, and act as a "maintainer of last resort" for abandoned but widely used packages. The goal is to reduce duplicate reports, avoid conflicting patches, and help upstream maintainers address vulnerabilities before they can be exploited. As AI makes it easier to find security flaws, can a coordinated industry effort help protect open source, or does it risk giving large corporations too much influence over the ecosystem? "Akrites is the largest coordinated effort in history to create systems and deploy tooling that leverages the collective power of the community to make everyone safer," the Linux Foundation said in an open letter. "Akrites participants will contribute engineering resources; work to build and ship fixes; or fund the engineers who do. Some companies have contributed mightily already. The reality is, collectively, we need to contribute more."

Read more of this story at Slashdot.