Christian Grobmeier
banner
grobmeier.de
Christian Grobmeier
@grobmeier.de
620 followers 750 following 330 posts
Java Champion & ASF VP Data Privacy. I write and speak about code, ethics, and what it means to build systems that last.
Posts Media Videos Starter Packs
Reposted by Christian Grobmeier
"Nobody stops in to check on you. They check on the project. There’s also nobody standing up and saying, ‘hey, thank you for the good work you’re doing to remediate this issue.’"

The harsh truth: maintainers give their spare time, yet positive feedback is rare.

Appreciate who is behind the code. 💛
I never imagined GitHub would ask me to speak about #Log4Shell.
But it happened.

@github.com asked me to share the story as I lived it, for the benefit of users of #opensource. How could I say no?

I hope it helps build a more secure future.
No more Log4Shell.

#java
The internet was on fire. 🔥
One small library affecting billions of systems.
Log4Shell was the biggest security vulnerability of all time.

Now, Log4J maintainer, Christian Grobmeier tells us what it felt like inside the flames 👉 github.blog/open-source/...
Reposted by Christian Grobmeier
As a fellow maintainer of an open source project, this is an intense and somewhat scary read. Thanks to @grobmeier.de for being so open to talk about what he experienced and @github.com for initiating their Secure Open Source Fund!

github.blog/open-source/...
Inside the breach that broke the internet: The untold story of Log4Shell
Log4Shell proved that open source security isn't guaranteed and isn’t just a code problem.
github.blog
Thank you! It means a lot to hear this
I never imagined GitHub would ask me to speak about #Log4Shell.
But it happened.

@github.com asked me to share the story as I lived it, for the benefit of users of #opensource. How could I say no?

I hope it helps build a more secure future.
No more Log4Shell.

#java
The internet was on fire. 🔥
One small library affecting billions of systems.
Log4Shell was the biggest security vulnerability of all time.

Now, Log4J maintainer, Christian Grobmeier tells us what it felt like inside the flames 👉 github.blog/open-source/...
OK, so enough hiatus. I'm back.
It's Monday, early morning. Today, something will change.
Will keep you posted.
You are officially on my awesome list now :) Thank you!
Thank you Mark :-)
Without your patience and guidance, none of this would have been possible. You are one of the most important mentors in my life, and I’m deeply grateful for everything you’ve done for me. I know who I was and how much your support helped me grow. Not only as a developer but as a human.
Thank you very much :)
Thanks Eberhard :)
Today, I was awarded the title of Java Champion!

It’s a huge honor, and I’m grateful for everyone I’ve met in the Java universe, especially those who taught me how to code. I’m feeling happy and a little proud. 😊

#java #programming
Wow, thanks, Andres, for the welcome and the update to the repo
Thank you Thomas :)
Thank you Markus. It's an honor!
Thanks Oliver. It's all your fault! ;-)
Thank you Eric :-)
Thank you Simon :-)
I guess you could say I am a power user now. However, some recommendations make my writing worse, not better.