Developer Reactions to Protestware in Open Source Software: The cases of color.js and es5.ext
- URL: http://arxiv.org/abs/2409.15674v2
- Date: Fri, 18 Oct 2024 06:52:15 GMT
- Title: Developer Reactions to Protestware in Open Source Software: The cases of color.js and es5.ext
- Authors: Youmei Fan, Dong Wang, Supatsara Wattanakriengkrai, Hathaichanok Damrongsiri, Christoph Treude, Hideaki Hata, Raula Gaikovina Kula,
- Abstract summary: We study two notable protestware cases i.e., colors.js and es5-ext.
By establishing a taxonomy of protestware discussions, we identify posts that express stances and provide technical mitigation instructions.
This work sheds light on the nuanced landscape of protestware discussions, offering insights for both researchers and developers.
- Score: 13.043109610854646
- License: http://creativecommons.org/licenses/by/4.0/
- Abstract: There is growing concern about maintainers self-sabotaging their work in order to take political or economic stances, a practice referred to as "protestware". Our objective is to understand the discourse around discussions on such an attack, how it is received by the community, and whether developers respond to the attack in a timely manner. We study two notable protestware cases i.e., colors.js and es5-ext. Results indicate that protestware discussions are spread more quickly on the GitHub platform, while security vulnerabilities are faster on social media. By establishing a taxonomy of protestware discussions, we identify posts that express stances and provide technical mitigation instructions. We applied a thematic analysis to 684 protestware related posts to identify five major themes during the discussions: i. disseminate and response, ii. stance, iii. reputation, iv. communicative styles, v. rights and ethics. This work sheds light on the nuanced landscape of protestware discussions, offering insights for both researchers and developers into maintaining a healthy balance between the political or social actions of developers and the collective well-being of the open-source community.
Related papers
- An Investigation into Protestware [3.236198583140341]
Protestware is software that can be used to organize protests.
Recent events in the Russo-Ukrainian war has sparked a new wave of protestware.
arXiv Detail & Related papers (2024-09-30T01:17:16Z) - Demarked: A Strategy for Enhanced Abusive Speech Moderation through Counterspeech, Detoxification, and Message Management [71.99446449877038]
We propose a more comprehensive approach called Demarcation scoring abusive speech based on four aspect -- (i) severity scale; (ii) presence of a target; (iii) context scale; (iv) legal scale.
Our work aims to inform future strategies for effectively addressing abusive speech online.
arXiv Detail & Related papers (2024-06-27T21:45:33Z) - Jailbreak Vision Language Models via Bi-Modal Adversarial Prompt [60.54666043358946]
This paper introduces the Bi-Modal Adversarial Prompt Attack (BAP), which executes jailbreaks by optimizing textual and visual prompts cohesively.
In particular, we utilize a large language model to analyze jailbreak failures and employ chain-of-thought reasoning to refine textual prompts.
arXiv Detail & Related papers (2024-06-06T13:00:42Z) - Conversational Agents to Facilitate Deliberation on Harmful Content in WhatsApp Groups [13.830408652480418]
WhatsApp groups have become a hotbed for the propagation of harmful content.
Given the platform's end-to-end encryption, moderation responsibilities lie on group admins and members.
We investigate the role of a conversational agent in facilitating deliberation on harmful content in WhatsApp groups.
arXiv Detail & Related papers (2024-05-30T17:07:07Z) - White-box Multimodal Jailbreaks Against Large Vision-Language Models [61.97578116584653]
We propose a more comprehensive strategy that jointly attacks both text and image modalities to exploit a broader spectrum of vulnerability within Large Vision-Language Models.
Our attack method begins by optimizing an adversarial image prefix from random noise to generate diverse harmful responses in the absence of text input.
An adversarial text suffix is integrated and co-optimized with the adversarial image prefix to maximize the probability of eliciting affirmative responses to various harmful instructions.
arXiv Detail & Related papers (2024-05-28T07:13:30Z) - Leveraging the Context through Multi-Round Interactions for Jailbreaking Attacks [55.603893267803265]
Large Language Models (LLMs) are susceptible to Jailbreaking attacks.
Jailbreaking attacks aim to extract harmful information by subtly modifying the attack query.
We focus on a new attack form, called Contextual Interaction Attack.
arXiv Detail & Related papers (2024-02-14T13:45:19Z) - Going Viral: Case Studies on the Impact of Protestware [13.697165741749513]
We study two notable protestware cases, Colors.js and es5-ext, comparing with discussions of a typical security vulnerability as a baseline.
We perform a thematic analysis of more than two thousand protest-related posts to extract the different narratives when discussing protestware.
arXiv Detail & Related papers (2024-01-30T03:23:04Z) - SQuARe: A Large-Scale Dataset of Sensitive Questions and Acceptable
Responses Created Through Human-Machine Collaboration [75.62448812759968]
This dataset is a large-scale Korean dataset of 49k sensitive questions with 42k acceptable and 46k non-acceptable responses.
The dataset was constructed leveraging HyperCLOVA in a human-in-the-loop manner based on real news headlines.
arXiv Detail & Related papers (2023-05-28T11:51:20Z) - Ethical Considerations Towards Protestware [11.149764135999437]
A key drawback to using a Open Source third-party library is the risk of introducing malicious attacks.
In recently times, these threats have taken a new form, when maintainers turn their Open Source libraries into protestware.
This is defined as software containing political messages delivered through these libraries, which can either be malicious or benign.
arXiv Detail & Related papers (2023-05-27T10:59:48Z) - Dynamic Emotions of Supporters and Opponents of Anti-racism Movement
from George Floyd Protests [4.628652869726037]
This study attempts to empirically examine a recent anti-racism movement initiated by the death of George Floyd with the lens of stance prediction and aspect-based sentiment analysis (ABSA)
First, this study found the stance of the tweet and users do change over the course of the protest. Furthermore, there are more users who shifted the stance compared to those who maintained the stance.
arXiv Detail & Related papers (2021-09-29T08:27:30Z) - Is 40 the new 60? How popular media portrays the employability of older
software developers [78.42660996736939]
We analyzed popular online articles and related discussions on Hacker News through the lens of employability issues and potential mitigation strategies.
We highlight the importance of keeping up-to-date, specializing in certain tasks or technologies, and present role transitions as a way forward for veteran developers.
arXiv Detail & Related papers (2020-04-13T10:00:03Z)
This list is automatically generated from the titles and abstracts of the papers in this site.
This site does not guarantee the quality of this site (including all information) and is not responsible for any consequences.