Dasharo v0.9.0 Brings Open-Source Firmware to AMD AM5 Boards
Dasharo v0.9.0 debuts as the first open-source firmware for AMD's AM5 platform, pairing Coreboot with openSIL on the MSI B850-P WiFi board.
Open source security tools have become foundational infrastructure for how organizations defend networks, applications, and data. From vulnerability scanners and intrusion detection systems to encryption libraries and authentication frameworks, these community-built and community-audited projects power much of the software running behind the scenes—including protocols and libraries embedded in billions of devices worldwide. Their transparency allows security researchers anywhere to inspect code, discover flaws, and contribute fixes, a model that proponents argue produces more resilient software than closed alternatives.
This approach matters more than ever as software supply chains grow increasingly complex and interdependent. A single widely used library can sit quietly inside countless applications for years, meaning that a newly discovered vulnerability—even in decades-old code—can have consequences rippling across the entire tech ecosystem. Incidents like this remind readers why maintaining, funding, and rigorously auditing open source security infrastructure isn't optional; it's a shared responsibility spanning independent maintainers, corporations, and governments alike.
On this hub, readers will find ongoing coverage of newly disclosed vulnerabilities in widely deployed open source components, patches and coordinated disclosure efforts, and analysis of how maintainers and the broader community respond under pressure. Expect updates on emerging tools for threat detection, penetration testing, encryption, and secure development practices, as well as discussion of funding models and sustainability challenges facing critical open source projects. We also track how enterprises and governments are shaping policy around open source security, including initiatives aimed at hardening the software supply chain. Whether you're a developer, security professional, or simply concerned about the software you rely on daily, this is where the evolving story of open source security unfolds.
Dasharo v0.9.0 debuts as the first open-source firmware for AMD's AM5 platform, pairing Coreboot with openSIL on the MSI B850-P WiFi board.
FLOSS Weekly 877 covers Boost Security's SmokedMeat RCE tool as Nvidia, Microsoft and IBM launch a 40+ member open-source AI security alliance.
China's open-source AI models spark debate over geopolitical risk, weak business models, and Wall Street's bullish chip bets.
AMD's Lisa Su defends open-source AI after an OpenAI model autonomously hacked Hugging Face, fueling debate over agentic AI security.
Chinese open-weight AI models like DeepSeek gain traction as OpenAI and Anthropic costs rise, sparking debate over pricing motives.
Lemon.io data shows developer rates rising in 2026 even as AI coding assistants and generators, per G2, become mainstream in engineering workflows.
Coverage highlights ShareX's continued popularity as a free, open-source Windows screenshot and annotation tool with automated capture workflows.
Zoom is acquiring Seattle startup Common Room to integrate its AI-driven sales tools and agents into Zoom's platform.
Anthropic launches Claude Sonnet 5, a highly agentic model with deliberately limited dangerous cybersecurity capabilities, now default across all plans.
curl patched 18 CVEs in one release, including a 25-year-old flaw (CVE-2026-8932) dating to 2001, its oldest security bug ever.
3D printing's rapid advances are pushing manufacturers to adopt new tools, reshaping product cycles, hardware startups, and security needs.