"As these tools become more powerful and affordable, #skepticism in #media will grow. But the question isn't whether we can trust what we see and hear. It's whether we can trust who's showing it to us. In an era where anyone can generate a realistic video of anything for $1.50, the #credibility of the #source becomes our primary anchor to #truth. The medium was never the message—the #messenger always was."

arstechnica.com/ai/2025/05/ai-

European critical dependencies

TLDR; Multiple countries in Europe are critically dependent on services provided by Microsoft. Querying mail-servers teaches that in some countries, over 70% of all public services rely on this American provider. Europe needs to build its own infrastructure, and open source is the most robust solution.

What we tried…

Insight 1: Every self-respecting municipality has a website and online services.
Insight 2: DNS records show us how mail is being sent for a domain.

Using these two simple concepts (which in the end weren’t always that simple, but that’s a different rabbit hole), we started a small project collecting the municipal website of as much local governments in Europe as we could collect. For that domain name, we then looked for the MX-servers (mail exchange-servers, that are responsible for sending mail). Next we started mapping those MX-servers into a few categories. First off, we gave the two biggest global players its own place on the stage. For the other servers, we grouped them per continent and for Europe made a distinction between EU-servers and non-EU servers (as this is relevant for GDPR). In a final step, we tried to visualize these records in such a way that they were easily inspectable. The result is this map.

If you’re interested in further examining the method used, or looking into the CSV files containing the MX-records for a specific country, you can find these in the git repository.

What we discovered…

Europe has been promoting interoperability and open standards for decades. They have also been encouraging the use of local services and products. For e-mail for example there is a gigantic difference between the priorities countries choose. Yet, in practice a lot of cities and governmental services got persuaded to use zero-hassle, zero-insight solutions like the ones Microsoft and Google seem to offer.

This means that many public services rely on Microsoft for their daily operations – going from document storage to automation and integration with the office tools. For this research, we’re focusing on e-mail. Especially in Scandinavia and the Benelux, Microsoft has established a strong prevalence. Purely based on the MX-records, we learn that 72% of Belgian municipalities run Microsoft mail servers and 60% of the Dutch municipalities. For Scandinavia, it’s 64% in Norway and 57% in Sweden. In Finland, it’s a whopping 77% if the cities that are being served by Microsoft.

At the same time, countries like Germany – known for its strong hacker culture and cybersecurity awareness – land at mearly 4% running Microsoft. In Hungary too, they land on hardly 3% and in Bulgaria they are surpassed by Google, together only having 4% of the mail-share.

Lessons from the political climate

Dutch municipalities raise concerns of dependency

In research conducted by Binnenlands Bestuur, published on February 13, 2025, we can read growing concerns among Dutch municipalities about their deep reliance on Microsoft’s products. Nearly every municipality uses Microsoft’s software for daily operations, from Office 365 to Azure, making a switch both expensive and technically challenging. This dependency has raised alarms over vendor lock-in, potential price hikes, and the risks posed by U.S. legislation—such as the Cloud Act—which could force Microsoft to share European data with American authorities. While many local governments wish for a robust European alternative, none currently exists, prompting calls for a strategic approach to boost digital autonomy rather than an abrupt break with Big Tech.

International Criminal Court acknowledges critical dependency

A Guardian article, published on January 20, 2025, reports on escalating tensions around international legal actions and sanctions. The piece explains that the International Criminal Court (ICC) is preparing for significant repercussions as it faces potential swift U.S. sanctions from President Trump. These sanctions are a response to recent Israeli arrest warrants issued against individuals involved in alleged war crimes. The situation has raised alarm over the ICC’s ability to operate independently, with critics arguing that political and economic pressures—especially from the U.S.—could undermine its judicial authority. In this volatile climate, legal experts warn that the unfolding events could set a dangerous precedent for international justice and the enforcement of accountability for alleged crimes.

Unpredictable pricing

Once a country is locked in to a closed system, vendors can easily raise prices at random, as transition cost is often even higher. This for example happened in Finland, where over 75% of the municipalities already depend on MS services. From a Pirha regional government meeting in November of ’24, we learn prices would go up with roughly 25% in 2025, compared to 2024.

Despite the Finnish government already changing policy in 2023, aiming to prioritize European services, it appears that in 2024 still a big majority of the public services are running the MS suite. Proving exactly how vendor lock-in can stronghold our whole infrastructure.

In Sweden too, experts have expressed their concerns about dependency on US based technology for their critical infrastructure. “The protection mechanisms that would ensure that European data do not end up in the hands of US authorities are effectively dismantled,” Heath said. He believes that Sweden must take control of its own infrastructure and not lean on the American one.

Norway is likewise uneasy about heavy reliance on U.S. cloud providers. A recent commentary noted that Norwegian public institutions are completely at the mercy of Microsoft’s cloud services today​. It warns American cloud services might even become illegal in Norway if the EU–US data deal falters​, raising doubts about the legality of using Microsoft, Google, etc. The author argues Norway faces a crossroads: become more dependent on a “crumbling American democracy” or dare to pursue new paths​. This reflects growing concern in Norway over digital sovereignty and security, urging investment in European or domestic alternatives to give authorities better control of their data.

Not only municipalities, also public services

In Denmark, the Data Protection Authority took action over public sector use of Google services. In 2022 it banned Helsingør Municipality from using Google Chromebooks and Workspace in schools due to GDPR violations​, judging that the data transfer risks were too high. Some 50 municipalities were ordered to fix their Google Workspace use to comply with the law​. The ban was later suspended while Google and authorities work on remedies, allowing Helsingør and others to temporarily continue using Google Workspace​. This controversy underscores Danish concerns about data sovereignty, security risks, and vendor lock-in, prompting consideration of alternative solutions or stricter agreements to protect citizen data.

The schizophrenia needed to solve the issues, is clearly documented in the Google story. While Google achieved to set clear guidelines for using Google Classroom, these don’t apply when using other Google products like Google Maps, Youtube or Google Search. Three year later, it seems clear that Google hasn’t succeeded in setting a clear framework, this article by Sivon from 2025 teaches us.

This critical dependency also creates situations like in Belgium, where 100% of the police force uses Microsoft for their mail service, and 57% of the fire departments run Microsoft or Google. Similar figures can be for Belgian hospitals. If Microsoft would become unavailable in Belgium, this would cause a critical chaos and cost lives.

Prioritize local economies

While Europe has a strong policy when it comes to prioritizing local economy in the context of an interoperable Europe, policy makers all around seem to be susceptible to prefer the trodden paths of MS and Google.

Obviously, companies like Microsoft also feel the heat and are scrambling to procure nice infographics and promises, they even throw in some AI candy… but in the end, they still remain a US company. So they are susceptible to US law – which can affect both our privacy and our dependence: “U.S. laws such as the CLOUD Act continue to grant the U.S. government the authority to access this data,” warned the analyst. The question therefore is whether European governments can actually restrict this kind of access. “Can a single US disposition override these obligations,” the expert wonders. “In this case, residence does not necessarily mean control.”

And while president Trump with its Department of Governmental Efficiency (DOGE) is currently pushing the boundaries of the legal frameworks quite openly, the Snowden revelations have taught us that the US services have been monitoring EU citizens for over a decade through these international companies.

Are we willing to hand over our data and operations to a country that could pull the plug with the flick of a presidential finger?

Futureproofing our digital society

While it’s an important step to run applications from within Europe, it’s also important to realize that international relationships change. Furthermore, on the IT-market – a very international and competitive market – it’s not uncommon for companies to be bought up by bigger partners. What once was a local company, can quickly turn into a branch of a huge multinational. If this happens, both data and know-how often exchange hands and become part of a foreign entity, possibly no longer aligned with the priorities initially outlined when collaborations started.

By staying in control of the software used in your government, you eliminate the need to trust a company. In the Open Source ecosystem, there is already a long tradition of safeguarding knowledge and code to be accessible to all.

Sharing code between municipalities and governments, is also a very pragmatic way of cutting costs – allowing different partners to also tweak applications to tailor to local needs. Through the use of a strong open source license (e.g. GPL), you also protect other companies from profiting off your investment without contributing back for the betterment of the community.

Let me quote Johan Linåker in this article on the website of the French government:

The surveyed countries exhibit diverse policies, emphasizing interoperability, digital sovereignty, transparency, and cost efficiency. While cost efficiency interoperability and transparency were commonly referred to, much less attention was paid to digital sovereignty and even less to cyber security and sustainability aspects related to FOSS. The latter is rather surprising but can potentially be explained by the relatively recent uprise of these topics in public debates. We hope and strongly recommend that these topics be considered explicitly in upcoming policies.

Local talent

Europe has some of the greatest minds in the field of cybersecurity and IT. Given the job-market is ever-expanding in the US and merely on life support in Europe, it is obvious that our biggest talents cross the pond to fully harvest their potential. Now is the time to invest in our local talent, to safeguard our companies from being bought up by US investors.

Hacker communities and FOSS movements have been bringing the message for decades. Europe must decide whether to remain dependent on foreign tech giants or to invest in its own future. We have the expertise, the resources, and the legal frameworks to support a shift toward European digital sovereignty. What we need now is action from policymakers and pressure from the public to ensure that the infrastructure of tomorrow serves European interests, not those of a foreign power.

And now…

The longer we wait, the harder it will be to break free. The reliance on a single vendor is not just a matter of cost but of sovereignty, security, and resilience. If European governments do not act now, they risk facing an even greater crisis when pricing becomes unsustainable, when services are withdrawn, or when geopolitical tensions escalate. The alternative is clear: build European infrastructure, promote open standards, and foster a thriving FOSS ecosystem that guarantees long-term independence.

Are you a local or national politician? Don’t quietly make deals with the established companies because it’s the easiest deal and they have the best marketeers.

Are you an engaged citizen? Reach out to your local municipality or government and question their choices.

Further reading

www.investigate-europe.eu/posts/europes-dire-dependency-on-microsoft
www.theregister.com/2025/02/26/europe_has_second_thoughts_about
www.heise.de/news/Informatiker-Ampel-hat-Ziele-fuer-Souveraenitaet-und-Open-Source-klar-verfehlt-10218368.html

Please add other articles in the comments!

#DigitalSovereignty #FOSS

@gabe_sky Cool. The qrencode in my Linux box does that nicely too.

@doctormo Definitely would pay, it's a great piece of software

@ApostateEnglishman @cstross input fields are probably the only annoying thing about writer but otherwise I agree, it's great. What still is lagging behind a lot IMO is Impress, which is nowhere near the usability of PowerPoint. That said, Quarto or LaTeX/Beamer are way superior to both

The outright wrecking of the scientific infrastructure in the US under the current administration chilled me to my bone. Kept me doomscrolling. But I finally found a way to do something positive, in a small way: I dedicated some storage space and a bit of my internet connection to a decentralized backup of deleted research data.
I am happy to report that @SafeguardingResearch 's torrent swarm now has ca 14 TB storage and a Gbit connection more.
#sciop #safeguardingresearch #academicchatter

@dom_somma @uofglasgow @Unicatt

Well done you! You're going to miss the sun for sure 😂

**Please boost and tell your contacts**

We are offering two senior lecturer positions to support and develop teaching in our two undergraduate programmes in Integrative Biomedical Sciences and Biomedical Informatics.

Posts are based in Edinburgh, with teaching delivered in our Joint Institute in Haining, China (up to 12 weeks/year). These are for 5 years tenure-track positions, moving to an open-ended contract subject to a satisfactory formal review at the end of year 3.

Feel free to contact me for more detail

Note the first ad is specifically for someone with Transnational Education experience, while for the second that is not a strict requirement.

elxw.fa.em3.oraclecloud.com/hc

elxw.fa.em3.oraclecloud.com/hc

Academic-Track Senior Lecturer in Biomedical Sciences with Transnational Education experience (Zhejiang)

We wish to appoint an Academic-Track Senior Lecturer to support and develop teaching and research linked to the undergraduate Dual Award Honours programmes in Integrative Biomedical Sciences and Biomedical Informatics jointly developed with Zhejiang University, China. The post-holder will spend up to 12 weeks per annum on teaching-related activities at the University of Edinburgh-Zhejiang University (ZJE) Institute based at the Zhejiang University International Campus in Haining, China (http://zje.intl.zju.edu.cn/). Candidates with experience in metabolism, systems biology and/or integrative physiology are encouraged to apply, particularly those with prior experience of delivering transnational education in the China/East Asia context.

University of Edinburgh

@ruedigergad @carolannie @annaleen I haven't tried the one in Acrobat, but generally ChatGPT or Gemini do a good work at summarising. I don't think hallucinations are a big problem honestly (for summarisation , they are a big problem for other things) I maybe haven't used them extensively but I don't recall seeing any obvious errors when summarising a document. It's the critical evaluation that is probably a bit more limited, but again if you want a quick summary, probably you're not looking for that either, and the tool does the job.

Honestly, aside fron the initial "oh that's cool" novelty-item moment I would say that mostly it's faster and more efficient to quickly scan papers manually yourself but there are other uses.

@MCDuncanLab First of all congratulations! It is something that really annoys me when someone tells me they cannot possibly teach xyz because it's not their exact speciality... my idea is that every faculty should be able to teach any lecture in a year 1 undergraduate course and probably a good number of lectures in more advanced undergraduate courses.

The lectures I'm most proud of and from which I've learned most are those that were really outside of my field.

🎉 Learned I received the departmental teaching award. I'm pretty pleased about that. This is my first-ever teaching award. Normally, it's not a big deal because it just rotates to the newest course director, but I wasn't a course director. As far as I can tell, this is the first time someone who is not a course director has won it.

I think it's quite well deserved. Our typical teaching load is 1-4 lectures/yr. I've been teaching far more than that for years.

@pancake How ads can improve someone's experience is beyond me.

I didn't know

When I learned about the holocaust as teenager in Germany, many people from the Nazi era were still alive and lived all around me. Being the curious person I always was, I asked them about what happened and their role in it.

"I didn't know" was the boilerplate answer. And as they were relatives and friends, I believed them at first.

Then in 1981 we got a new teacher for history and he exposed the lie. Or more precise: he got us exposing those lies.

1/5

🧵 THREAD: A federal whistleblower just dropped one of the most disturbing cybersecurity disclosures I’ve ever read.

He's saying DOGE came in, data went out, and Russians started attempting logins with new valid DOGE passwords

Media's coverage wasn't detailed enough so I dug into his testimony:

Join our Github training workshop - open to all (including people not signed up for Book Dash!)

⚒️ Learn how to use the Github platform
⚒️ Make your first Pull Request
⚒️ Find out how to contribute to The Turing Way project

📅 6 May
⏰ 5-5:30 UTC+1

Sign-up here: forms.gle/GBrBmpbJ4DdTyGn5A

The Turing Way - Github Workshop - May 2025

Date: Monday, 6 May, 15-16:30 UTC+1 (in your timezone) The Turing Way is a community-led resource for reproducible, open, collaborative, and inclusive data science. Created by over 400 contributors, The Turing Way uses open source tools to enable people to collaboratively write chapters, build and maintain resources, as well as share their skills and ideas around best practices. Core to this is the version control tool, Github which supports The Turing Way’s collaborative practices. In this workshop, co-facilitators from The Turing Way Community will introduce participants to using GitHub as a tool to support collaborative documentation-writing and knowledge sharing. They will discuss the importance of open community practices in building and maintaining collective resources, and learn about the importance of different roles in open source documentation communities like The Turing Way: including that of maintainers, reviewers, and translators. Participants will gain hands-on experience in working collaboratively during the workshop by contributing to the The Turing Way project. A shared document will be used for collaborative note-taking, capturing feedback and learning. This workshop will be lead by Book Dash Planning Committee members Precious Onyewuchi, Arielle Bennett, Anne Lee Steele, and Léllé Demertzi. This training is being offered as a part of Book Dash: a week-long event of contributions and collaborations within The Turing Way community. All are welcome - you do not need to be a Book Dash participant to join! If there are any additional questions you have, or access-related support we can provide to make your participation easier, please email Anne Lee Steele, Research Community Manager at asteele@turing.ac.uk. Alternatively, you can also use the 'Questions & Comments' section of this form. Data collected through this form is subject to The Alan Turing Institute's privacy policy. Learn more here: https://www.turing.ac.uk/privacy-policy.

Google Docs
Show thread

@bitsnpieces @junesim63 Problem is, this impacts also people who don't use the website...

Show older
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.