Close Menu
Gossips Today
  • Tech & Innovation
  • Healthcare
  • Personal Finance
  • Lifestyle
  • Travel
  • Business
  • Recipes
What's Hot

Grok says it’s ‘skeptical’ about Holocaust death toll, then blames ‘programming error’

CMMI revamps strategy to focus on disease prevention, cost savings

Exclusive: Richard Branson on the Simple Item He Always Travels With—and How He Uses It to Make His Hotels, Planes, and Cruises Better

Facebook X (Twitter) Instagram
Monday, May 19
Gossips Today
Facebook X (Twitter) Instagram
  • Tech & Innovation

    Grok says it’s ‘skeptical’ about Holocaust death toll, then blames ‘programming error’

    May 19, 2025

    Laser-powered fusion experiment more than doubles its power output

    May 18, 2025

    MIT disavows doctoral student paper on AI’s productivity benefits

    May 18, 2025

    Build, don’t bind: Accel’s Sonali De Rycker on Europe’s AI crossroads

    May 17, 2025

    OpenAI’s planned data center in Abu Dhabi would be bigger than Monaco

    May 17, 2025
  • Healthcare

    CMMI revamps strategy to focus on disease prevention, cost savings

    May 19, 2025

    AdvaMed CEO Scott Whitaker pleads for tariff relief in Senate hearing

    May 18, 2025

    House committees advance reconciliation text with big impacts on healthcare

    May 18, 2025

    Rite Aid sells upwards of 1,000 stores to CVS, Walgreens, others

    May 17, 2025

    Residents more likely to suffer physical restraints, bedsores at bankrupt nursing homes: report

    May 16, 2025
  • Personal Finance

    4 Steps to Navigate Marriage and Debt

    May 11, 2025

    Buying a Fixer-Upper Home: What to Know

    May 10, 2025

    How to Talk to Your Spouse About Money

    May 10, 2025

    Millennials and Retirement – Ramsey

    May 9, 2025

    Retirement Education – Ramsey

    May 9, 2025
  • Lifestyle

    3 Fixes If You Hate the Way Your Pants Fit (That Have Nothing to Do with Your Waist Size)

    May 14, 2025

    On Sale Now: 9 Nike Sneakers Under $100 You’ll Want to Wear All Summer

    May 10, 2025

    Get the Look: Chateau Vibes, Courtyard Rates

    May 8, 2025

    Midlife Crisis, but Make It Casual

    May 6, 2025

    The Shoes You Buy Will Last Longer If You Just Understand This

    April 23, 2025
  • Travel

    Exclusive: Richard Branson on the Simple Item He Always Travels With—and How He Uses It to Make His Hotels, Planes, and Cruises Better

    May 18, 2025

    Prime Members Are Ahead of the Game With These 50 Exclusive Early Memorial Day Deals at Amazon—Up to 86% Off

    May 18, 2025

    This Weeklong, Food-focused Train Ride Through Europe Was an Unexpected Way to Taste My Way Through the Region

    May 17, 2025

    I’m a TSA Employee—These 10 Mistakes Will Make You 'That' Person in the Security Line, and How to Avoid Them

    May 17, 2025

    This U.S. State Has the Most Road Rage, Report Finds

    May 16, 2025
  • Business

    Housing market shift explained—and where it’s happening the fastest

    May 18, 2025

    Housing market shift: Foreclosures are creeping back up again

    May 18, 2025

    North Dakota’s Theodore Roosevelt Presidential Library will redefine what a presidential library can be

    May 17, 2025

    From lab to market: Monetizing R&D 

    May 17, 2025

    OpenAI launches Codex, an AI agent for coding

    May 16, 2025
  • Recipes

    challah french toast

    May 6, 2025

    charred salt and vinegar cabbage

    April 25, 2025

    simplest brisket with braised onions

    April 2, 2025

    ziti chickpeas with sausage and kale

    February 26, 2025

    classic lemon curd tart

    February 1, 2025
Gossips Today
  • Tech & Innovation
  • Healthcare
  • Personal Finance
  • Lifestyle
  • Travel
  • Business
  • Recipes
Technology & Innovation

A new security fund opens up to help protect the fediverse

gossipstodayBy gossipstodayApril 2, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
A new security fund opens up to help protect the
Share
Facebook Twitter LinkedIn Pinterest Email

The fediverse, also known as the open social web that includes Mastodon, Meta’s Threads, Pixelfed, and other apps, is ramping up its security. On Wednesday, a nonprofit focused on bringing governance to open source projects, the Nivenly Foundation, announced the launch of a new security fund that will pay those who responsibly disclose security vulnerabilities that affect fediverse apps and services.

While all software can have security issues, Mastodon — an open source and decentralized alternative to X — has fixed numerous bugs over the years, leading to the need for such a program. Another issue found in the fediverse is that many servers are run by independent operators who don’t necessarily have a security background or understand best practices.

Already, the Nivenly Foundation has helped a few fediverse projects set up their basic security vulnerability reporting process, and now it’s looking to distribute small payouts to anyone who responsibly discloses other security vulnerabilities that may still be in the wild.

The payouts will total $250 for vulnerabilities with a vulnerability severity score (known as CVSS) of 7.0-8.9 and $500 for more critical vulnerabilities with a CVSS score of 9.0 or greater. The funds for the payouts come from the foundation, which is supported directly by members that includes individuals as well as other trade organizations.

The vulnerabilities themselves are validated by acceptance from the fediverse project leads as well as public records in vulnerability disclosure (CVE) databases.

The fund is currently in a limited trial after the discovery of a security vulnerability in the decentralized Instagram alternative, Pixelfed. Open source contributor Emelia Smith came across the issue, and the Nivenly Foundation paid her to fix it, she explains.

A more recent issue came about when Pixelfed’s creator, Daniel Supernault made the details of a vulnerability public before server operators had a chance to update, which would have left the fediverse vulnerable to bad actors, she says. (Supernault has already apologized publicly for his handling of the issue that had affected private accounts.)

“Part of the program is…education for project leads, helping them understand why responsible disclosure practices for security vulnerabilities are important,” Smith told TechCrunch. “We came across several projects that just said ‘file security vulnerabilities in our public issue tracker,’ which absolutely isn’t safe, as any malicious actor watching that repository would now be able to attack instances of that software,” she added.

Typically, the common practice is to disclose minimal information about a vulnerability, giving server operators time to upgrade, Smith said. However, this requires that project leads understand security best practices.

In the case of the Pixelfed issue, for instance, the Hachyderm Mastodon server, which has over 9,500 members, decided it needed to defederate (or disconnect from) other Pixelfed servers that hadn’t been updated in order to protect their users.

With this new program designed to follow best practices around the disclosure of vulnerabilities, the need to defederate to protect users may become less common.

fediverse fund opens protect Security
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous Article‘A cruel April Fool’s joke’: HHS layoffs characterized by confusion, errors
Next Article Design dignity for those with disabilities
admin
gossipstoday
  • Website

Related Posts

Grok says it’s ‘skeptical’ about Holocaust death toll, then blames ‘programming error’

May 19, 2025

Laser-powered fusion experiment more than doubles its power output

May 18, 2025

MIT disavows doctoral student paper on AI’s productivity benefits

May 18, 2025
Leave A Reply Cancel Reply

Demo
Trending Now

How to Get and Stay Motivated When Starting a New Exercise and Diet Phase

Alignment Healthcare names new president as insurer eyes growth

What Is a Bear Market?

Grok says it’s ‘skeptical’ about Holocaust death toll, then blames ‘programming error’

Latest Posts

Grok says it’s ‘skeptical’ about Holocaust death toll, then blames ‘programming error’

May 19, 2025

CMMI revamps strategy to focus on disease prevention, cost savings

May 19, 2025

Exclusive: Richard Branson on the Simple Item He Always Travels With—and How He Uses It to Make His Hotels, Planes, and Cruises Better

May 18, 2025

Subscribe to News

Subscribe to our newsletter and stay updated with the latest news and exclusive offers.

Advertisement
Demo
Black And Beige Minimalist Elegant Cosmetics Logo (4) (1)
Facebook X (Twitter) Pinterest Vimeo WhatsApp TikTok Instagram

Categories

  • Tech & Innovation
  • Health & Wellness
  • Personal Finance
  • Lifestyle & Productivity

Company

  • About Us
  • Contact Us
  • Advertise With Us

Services

  • Privacy Policy
  • Terms & Conditions
  • Disclaimer

Subscribe to Updates

© 2025 Gossips Today. All Right Reserved.

Type above and press Enter to search. Press Esc to cancel.