Skip to Content

July 18, 2025: Open Source News and Digital Sovereignty Issues

TL;DR:

🔐 OpenAI again delays the release of its open-source model, citing security concerns (TechCrunch)

📈 96% of organizations are maintaining or increasing their use of free software, notably to reduce costs (OpenLogic)

đŸ€– Generative AI is shaking up the landscape with models like Kimi K2, which outperforms GPT‑4.1 on certain benchmarks (TechCrunch)

đŸ›Ąïž 86% of applications contain vulnerable open-source components – security is becoming a critical issue (Resilient Cyber)

đŸ‡ȘđŸ‡ș Europe is refining its open-source strategy through the Cyber Resilience Act and an interoperability doctrine in the public sector (Systematic)

1. OpenAI, Kimi K2 and the race for open models

In mid‑July, OpenAI announced a new delay in the release of its first open‑source model since 2019, citing the need for “additional security testing” on sensitive parts of the model (source: TechCrunch). This delay comes as Moonshot AI releases Kimi K2, an open‑source model with 1 trillion parameters that beats GPT‑4.1 on several key benchmarks.

💡 What this says about the ecosystem: even longstanding proprietary model giants now recognize the strategic value of open source in maintaining their competitiveness.

2. Open source is gaining ground within organizations

OpenLogic’s 2025 State of Open Source report reveals that 96% of surveyed organizations have maintained or increased their use of free software, and 26% have significantly increased it.

The main motivation: cost reduction, but usage is expanding into strategic areas such as cloud, containers, and data science.

⚠ Caveat: nearly half of companies using Big Data platforms say they lack confidence in their ability to manage them due to a lack of internal expertise.

3. Security to be strengthened

The warning is clear: 86% of applications integrate vulnerable open‑source components, of which 64% are critical (source: Resilient Cyber).

In response to this systemic threat, the OpenSSF (Open Source Security Foundation) has stepped up its efforts by organizing several summits, particularly in Washington D.C., to promote the security of the software supply chain.

🔧 Tools like Scorecards and Sigstore are becoming more important, but their adoption remains too limited.

4. Digital sovereignty: Europe adjusts its doctrine

The Cyber Resilience Act (CRA) continues to be debated: the CNLL warns of the risk that volunteer maintainers will disengage if increased legal liability is imposed on them indiscriminately.

At the same time, the regulation for an interoperable Europe marks progress: it explicitly encourages the use of open‑source software in administrations “when it offers an equivalent level of functionality.”

đŸ‡ȘđŸ‡ș Europe is therefore moving on two fronts: tightening security obligations while strengthening the adoption of open solutions in the public sphere.

5. Notable new contributions

IBM has gifted the community three open‑source projects focused on AI and document management:

  • Docling (document conversion)
  • Data Prep Kit (AI data preparation)
  • BeeAI, a set of AI optimization tools (source: IBM)

For its part, the Linux Foundation is launching the FAIR Package Manager project, a package management system focused on traceability and dependency stability, with an eye on WordPress and CMSs.

đŸ”” Blue Fox’s word

The open‑source ecosystem is entering a phase of strategic consolidation: open models are becoming crucial in the AI race, organizations are migrating en masse toward sovereign solutions, and security requirements are tightening.

At Blue Fox, we believe that a healthy transition to open source requires pragmatic support focused on compliance, security, and digital sovereignty.

Thinking about your own open‑source strategy? Let’s talk.

📚 Main sources

  • TechCrunch – OpenAI delays the release of its open model, again https://techcrunch.com/2025/07/11/openai-delays-the-release-of-its-open-model-again/ MLQ.ai+11TechCrunch+11Yahoo Finance+11
  • Business Insider – Sam Altman says OpenAI is delaying its open‑weight model – again https://www.businessinsider.com/sam-altman-openai-delay-open-weight-model-run-safety-tests-2025-7 Business Insider+1Medium+1
  • OpenLogic (Perforce) – 2025 State of Open Source Report https://www.openlogic.com/resources/state-of-open-source-report TechCrunch+15OpenLogic+15OpenLogic+15
  • Resilient Cyber – The 2025 Open Source Security Landscape https://www.resilientcyber.io/p/the-2025-open-source-security-landscape Resilient Cyber
  • SecurityMagazine (via Black Duck) – Open source software vulnerabilities found in 86% of codebases https://www.securitymagazine.com/articles/101420-open-source-software-vulnerabilities-found-in-86-of-codebases arxiv.org+6Security Magazine+6linuxinsider.com+6
  • Systematic Paris-Region – Free software Cyber Resilience Act (CRA) (No direct link consulted, but cited via Systematic)
  • ZDNet – Regulation for an interoperable Europe: a step forward for free software (No direct link, mentioned in the draft)
  • IBM – IBM contributes key open‑source projects to Linux Foundation (Mentioned without a direct link, verified with IBM)
  • Linux Foundation – Linux Foundation Announces the FAIR Package Manager Project (Mentioned via their official channels)
  • Business Insider – $300 billion, 500 million users 
 OpenAI (context on open model delay) https://www.businessinsider.com/openai-competition-big-tech-meta-talent-windsurf-amazon-movie-deepmind-2025-7 reuters.com+1itpro.com+1OpenLogic+1OpenLogic+1Tech in Asia+6Business Insider+6Business Insider+6
SIFARH: the return of the SAAQclic spectre in health?
Éditorial Blue Fox