The Pressure
7 hours ago
- #software-security
- #open-source
- #work-life-balance
- The author works on curl full-time out of passion, seeing it as both a job and a hobby, dedicating long hours weekly.
- Curl, with around 30 billion installations globally, is highly scrutinized and fuzzed, but still faces bugs and security issues that require constant patching.
- Security report volume has surged to over one per day in 2026, with higher quality submissions, leading to record CVE projections and increased workload.
- The author's wife and others express concern over work-life balance, prompting consideration of reduced hours to prevent burnout.
- Funding from companies using curl commercially is desired to hire more developers and distribute the workload, though the project remains independent and self-reliant.
- Despite the pressure, vulnerabilities found in recent years are mostly low or medium severity, indicating improved security, and fixing issues enhances curl's quality.