I had a chat on #OpenSourceSecurity with Kat Cosgrove about open source being critical infrastructure (neglected critical infrastructure)

Kat has a ton of experience in the world of Kubernetes and had some really interesting things to tell us about both successful projects as well as having to shut down projects that didn't get enough resources

Kat even gives me some optimism at the end, which is in rare supply lately

https://opensourcesecurity.io/2026/2026-05-open-source-infrastructure-kat/

Open source is critical infrastructure with Kat Cosgrove

Josh talks to Kat Cosgrove about a how companies should be treating open source more like their critical infrastructure than free stuff. Kat has a ton of knowledge about how the interactions between companies and open source communities can work well, or not work at all. Kat’s time on the Kubernetes Release Team. We touch on how a project like Kubernetes is super successful, while another, Ingress NGINX, was not. It’s a super insightful discussion with a ton of lessons and advice for everyone.

Open Source Security
@joshbressers OK, so 80% single maintainers in 80% of production code... I liked Kat's invitation to teamwork and respect!