Mikael Barbero's Avatar

Mikael Barbero

@mikael.barbero.tech

Head of Security @ Eclipse Foundation We build our computers (systems) the way we build our cities: over time, without a plan, on top of ruins — Ellen Ullman

242 Followers  |  185 Following  |  282 Posts  |  Joined: 31.08.2023  |  2.1543

Latest posts by mikael.barbero.tech on Bluesky

What’s a technology that you think is overhyped?

I’m going to give a sideways answer to this, which is that the venture capital business model needs to be understood as requiring hype. You can go back to the Netscape IPO, and that was the proof point that made venture capital the financial lifeblood of the tech industry.

Venture capital looks at valuations and growth, not necessarily at profit or revenue. So you don’t actually have to invest in technology that works, or that even makes a profit, you simply have to have a narrative that is compelling enough to float those valuations. So you see this repetitive and exhausting hype cycle as a feature in this industry. A couple of years ago, you would have been asking me about the metaverse, then last year, you would have asked me about Web3 and crypto, and for each of these inflection points there’s an Andreessen Horowitz manifesto.

It’s not simply that one piece of technology is overhyped, it’s that hype is a necessary ingredient of the current business ecosystem of the tech industry. We should examine how often the financial incentive for hype is rewarded without any real social returns, without any meaningful progress in technology, without these tools and services and worlds ever actually manifesting. That’s key to understanding the growing chasm between the narrative of techno-optimists and the reality of our tech-encumbered world.

What’s a technology that you think is overhyped? I’m going to give a sideways answer to this, which is that the venture capital business model needs to be understood as requiring hype. You can go back to the Netscape IPO, and that was the proof point that made venture capital the financial lifeblood of the tech industry. Venture capital looks at valuations and growth, not necessarily at profit or revenue. So you don’t actually have to invest in technology that works, or that even makes a profit, you simply have to have a narrative that is compelling enough to float those valuations. So you see this repetitive and exhausting hype cycle as a feature in this industry. A couple of years ago, you would have been asking me about the metaverse, then last year, you would have asked me about Web3 and crypto, and for each of these inflection points there’s an Andreessen Horowitz manifesto. It’s not simply that one piece of technology is overhyped, it’s that hype is a necessary ingredient of the current business ecosystem of the tech industry. We should examine how often the financial incentive for hype is rewarded without any real social returns, without any meaningful progress in technology, without these tools and services and worlds ever actually manifesting. That’s key to understanding the growing chasm between the narrative of techno-optimists and the reality of our tech-encumbered world.

Stand by this: www.politico.com/newsletters/...

19.02.2025 16:42 — 👍 9826    🔁 3219    💬 167    📌 357
He has refused his Assent to Laws, the most wholesome and necessary for the public good.
He has endeavoured to prevent the population of these States; for that purpose obstructing the Laws for Naturalization of Foreigners.
He has obstructed the Administration of Justice, by refusing his Assent to Laws for establishing Judiciary powers.
He has made Judges dependent on his Will alone.
He has erected a multitude of New Offices, and sent hither swarms of Officers to harass our people, and eat out their substance.
He has affected to render the Military independent of and superior to the Civil power.
For cutting off our Trade with all parts of the world
For depriving us in many cases, of the benefits of Trial by Jury
In every stage of these Oppressions We have Petitioned for Redress in the most humble terms: Our repeated Petitions have been answered only by repeated injury. A Prince, whose character is thus marked by every act which may define a Tyrant, is unfit to be the ruler of a free people.

He has refused his Assent to Laws, the most wholesome and necessary for the public good. He has endeavoured to prevent the population of these States; for that purpose obstructing the Laws for Naturalization of Foreigners. He has obstructed the Administration of Justice, by refusing his Assent to Laws for establishing Judiciary powers. He has made Judges dependent on his Will alone. He has erected a multitude of New Offices, and sent hither swarms of Officers to harass our people, and eat out their substance. He has affected to render the Military independent of and superior to the Civil power. For cutting off our Trade with all parts of the world For depriving us in many cases, of the benefits of Trial by Jury In every stage of these Oppressions We have Petitioned for Redress in the most humble terms: Our repeated Petitions have been answered only by repeated injury. A Prince, whose character is thus marked by every act which may define a Tyrant, is unfit to be the ruler of a free people.

🇺🇸Happy Fourth of July🇺🇸 This year, I'm wearing my 𝐑𝐞𝐬𝐢𝐬𝐭 shirt to show my patriotism. I'm reading the declaration of independence as I always do on this occasion. Several of King George's offenses against the colonies resonate this year. Here they are, verbatim:

04.07.2025 17:51 — 👍 10    🔁 5    💬 0    📌 0

Iwata Satoru was an unconventional CEO. In all the best ways that could imply!

03.07.2025 07:00 — 👍 0    🔁 0    💬 0    📌 0

I used this procedure, and it works very well https://www.wikihow.com/Import-Twitter-to-Bluesky

02.07.2025 08:15 — 👍 1    🔁 0    💬 0    📌 0

I will be damned if I allow a bunch of Confederate-waving January 6th apologists give the American people a lecture on flag waving.

There is ZERO reason to enter an argument about patriotism with people who still worship traitors to America 150+ years later.

They. Are. Breaking. The. Law.

11.06.2025 01:21 — 👍 104933    🔁 22569    💬 1440    📌 674
Post image

🗓 On 4 June, the ORC community was represented by some of its members in the CRA Expert Group meeting hosted by @ec.europa.eu

We’re grateful to @ec.europa.eu for facilitating this discussion and to everyone involved.

@j-rico.bsky.social @tobie.bsky.social @mikael.barbero.tech @apache.org

05.06.2025 10:25 — 👍 2    🔁 2    💬 0    📌 0
Post image

📢 Calling developers, users, and committers! The Eclipse Foundation Security team is offering a new security training focused on vulnerability management and related subjects.

Register for Day 2 (June 10 on 4PM CEST): eclipse.zoom.us/meeting/regi...

➡️ blogs.eclipse.org/post/marta-r...

04.06.2025 11:03 — 👍 1    🔁 1    💬 0    📌 0
Preview
Announcing Security Training on Vulnerability Management, SBOM and related subjects Do you want to know more about

On June 3rd and 10th with my colleagues from the Eclipse Foundation we will be running a free security training on vulnerability management and related subject.

More details and registration links on blogs.eclipse.org/post/marta-r...

30.05.2025 15:35 — 👍 2    🔁 1    💬 0    📌 0
Post image Post image

🔒 Master vulnerability management! Our security training on 3 June and 10 June covers CVE reporting, embargoes, dependency evaluation, and SBOMs.

📅 Day 1: eclipse.zoom.us/meeting/regi...
📅 Day 2: eclipse.zoom.us/meeting/regi...

26.05.2025 08:20 — 👍 0    🔁 1    💬 0    📌 0
Post image

Rubio publicly criticizing an ally for cracking down on right-wing extremism. And Germany hitting back. We are in a new world

02.05.2025 20:39 — 👍 51748    🔁 12560    💬 2305    📌 1324
Preview
France and Germany unveil Docs, a homegrown alternative to Google Docs The Trump administration has set out to drastically reshape the relationship between the US and Europe. In response, Brussels is scrambling to adapt to this new reality,...

The days of Google Docs are ending; we enter the age of Docs, made by France's Interministerial Directorate for Digital Affairs and Germany's Center for Digital Sovereignty of Public Administration.

We need more governments to collaborate on public software projects to achieve digital sovereignty.

21.04.2025 14:25 — 👍 2133    🔁 748    💬 53    📌 81
Post image

BREAKING.

From a reliable source. MITRE support for the CVE program is due to expire tomorrow. The attached letter was sent out to CVE Board Members.

15.04.2025 17:23 — 👍 695    🔁 420    💬 38    📌 208

move slowly and build things

07.04.2025 16:19 — 👍 2298    🔁 562    💬 20    📌 37

Nailed it :D

08.04.2025 00:21 — 👍 0    🔁 0    💬 0    📌 0
Post image

VulnCon is a quite unique conference focus on software (and not only) vulnerability management. It is happening at the beginning of April and I will be speaking twice.

14.03.2025 15:23 — 👍 3    🔁 1    💬 0    📌 0
signal appstore icon: 

Signal - Private Messenger
Today Update

• Hidden “invite random journalist” button moved
to avoid accidental taps

Version 7.52 • 143.9 MB

signal appstore icon: Signal - Private Messenger Today Update • Hidden “invite random journalist” button moved to avoid accidental taps Version 7.52 • 143.9 MB

dead

28.03.2025 01:44 — 👍 3248    🔁 609    💬 15    📌 28

This is inaccurate. There is no known vulnerability with Signal's core tech. The memo was discussing phishing attempts, which Signal has worked to mitigate. And it was hastily reported.

It's important not to spread misinfo that can confuse people into moving away from meaningfully private comms.

26.03.2025 13:40 — 👍 2596    🔁 773    💬 119    📌 64
Preview
Hidden threats lurk in commercial software: How to manage risk While open-source software risks are not going away, attack trends show third-party software presents the greatest risk to the enterprise.

👀 New report from RL: While #OSS risks are not going away, attack trends show third-party commercial software presents the greatest risk to the enterprise. Learn more: www.reversinglabs.com/blog/hidden-...

#SoftwareSupplyChainSecurity #AppSec #DevSecOps #Dev

13.03.2025 12:35 — 👍 5    🔁 3    💬 0    📌 0

its amazing how chatgpt knows everything about subjects I know nothing about, but is wrong like 40% of the time in things im an expert on. not going to think about this any further

08.03.2025 00:13 — 👍 12423    🔁 3113    💬 88    📌 106

Claude Malhuret, always up to the challenges!

06.03.2025 16:54 — 👍 1    🔁 0    💬 0    📌 0
Post image

🌍 The first CRA Expert Group meeting was held in Brussels in February with the goal of turning the CRA into action. This group will advise the Commission on issues such as the “implementation guidance” and advice for the implementation of the CRA.

Learn how to get involved: buff.ly/4kddwOh

04.03.2025 15:56 — 👍 1    🔁 1    💬 0    📌 0
Post image

Being able to drop a quarterly US GDP prediction by 5.1% from +2.3% to -2.8% in a single week is one of the most impressive economic developments in the history of the world.

04.03.2025 09:02 — 👍 18490    🔁 5910    💬 652    📌 713

masterclass in how to answer “yes” while saying “no”

04.03.2025 17:05 — 👍 62    🔁 7    💬 5    📌 0
Video thumbnail

Trudeau: "He talked about banking again today in a tweet, which doesn't make any sense because 16 banks are currently active in Canada holding about $113b worth of assets in this country... what he wants is to see a total collapse of the Canadian economy, because that'll make it easier to annex us."

04.03.2025 16:35 — 👍 14696    🔁 3938    💬 401    📌 385
created issues + pull-requests on GitHub per months since 2015, showing a growing trend

created issues + pull-requests on GitHub per months since 2015, showing a growing trend

Ten years ago on this day we went full GitHub model in #curl: pull-request style development. We have since handled over 10.700 PRs in an increasing amount of activity.

https://daniel.haxx.se/blog/2015/03/03/curl-embracing-github-more/

03.03.2025 07:22 — 👍 4    🔁 1    💬 0    📌 0
Post image Post image 02.03.2025 21:47 — 👍 6    🔁 1    💬 1    📌 0

if literally anyone involved stopped to think about this for more than two seconds, they might realize it’s based on the idea that all mistakes can be fixed. which is wrong.

which is why move fast and break things should never be used anywhere near a government, where mistakes kill people.

27.02.2025 00:04 — 👍 14    🔁 4    💬 3    📌 0

-= We hoped we never had to do this but here we are and we now have to do this. =-

American trans humans are under threat and like in 1930s Germany, they now have to GTFO of their home country.

We have decided we need to collect some information on the possible ways out.

So we made a wiki.

08.02.2025 00:21 — 👍 394    🔁 250    💬 10    📌 22
Post image

European standardisation organisations and ENISA join for the 9th #Cybersecurity Standardisation Conference on 20 March. Registration is first come, first served.

#ORCWG is speaking on the panel “Overarching cybersecurity by standards."

www.enisa.europa.eu/events/cyber...

#cybersecurity #CRA

25.02.2025 09:08 — 👍 2    🔁 3    💬 0    📌 0
Post image

Reports indicate that cybercriminals are exploiting the Windows DLL side-loading technique using the legitimate jarsigner.exe executable to propagate malware, found in Java distributions like #EclipseTemurin.

@mikael.barbero.tech addresses this in a new statement: blogs.eclipse.org/post/mika%C3...

21.02.2025 09:57 — 👍 2    🔁 3    💬 0    📌 0

@mikael.barbero.tech is following 20 prominent accounts