Particle.news

Linux Foundation Launches Akrites to Tackle Open-Source Security Flaws

The program sets up a confidential industry incident-response team and coordinated disclosure workflow to speed patch deployment before AI can turn bug reports into exploits.

Overview

  • Akrites launched Friday as a Linux Foundation initiative backed by a coalition of tech, AI and financial firms and seed funding from the Alpha-Omega directed fund.
  • The project creates a shared Security Incident Response Team and a Coordinated Vulnerability Disclosure process to centralize reporting, validation, remediation, and pre-publication advisories.
  • Akrites stresses a confidentiality-first model and says it will judge success by patches reaching live systems rather than by public advisories alone.
  • The effort responds to frontier AI tools that speed both vulnerability discovery and exploit development, which has compressed the window maintainers have to fix flaws.
  • Akrites builds on prior Linux Foundation security work such as Alpha-Omega and the OpenSSF, offers to act as maintainer of last resort for unmaintained packages, and invites more organizations to join and contribute resources.