Titans and Trolls Enter the Open-Source Arena


by Debra Brubaker Burns*


I.    Introduction

Open-source software (“OSS”)[1] is changing the software industry, with many software products today containing at least some OSS components.  Facebook, with a market capitalization of nearly $105 billion at its initial public offering, has built its social-networking website on a platform of the Linux® operating system.[2]  One million new mobile devices from various phone makers are being activated daily, and run the open-source Linux-based Android™ operating system.[3]  Recently, Red Hat, the largest seller of Linux® software, became the first vendor to make all or nearly all of its money from building, maintaining, and selling OSS.[4]

Open-source software employs a development model and
licensing-agreement scheme where many software contributors contribute to a single code base.  The software code, with certain other rights normally reserved for copyright holders, is provided under an open-source license that permits users to study, change, improve, and at times, distribute and redistribute the software.[5]

The market acceptance and viability of OSS was not so assured even ten or fifteen years ago, when proprietary software like the Microsoft Windows operating system overwhelmingly dominated the market.  Commentators wondered whether OSS could ever be
sufficiently robust, powerful, and trustworthy to serve as the foundation of large-scale corporate computing systems, or even whether an OSS license was legally enforceable.[6]

The market seems to have answered the first question about the viability and marketability of OSS, which has become part of the mainstream software industry.[7]  After years of business enterprise
being powered by a proprietary software infrastructure built by Microsoft, Oracle, IBM and others, big Internet companies like Google are writing or adopting OSS with vigor.[8]  Google, Facebook, Twitter, and other Internet companies are scaling out their cloud-computing infrastructure with open-source software and commodity web servers.[9]  For example, software developers built much of Facebook from the ground up using OSS.[10]  Young technology companies today often rely on open-source business software rather than proprietary products such as operating systems from Microsoft.[11]  Even governmental entities and schools are adopting OSS models, at least in part for budgetary reasons.[12]

More than half of the 517 organizations that responded to a 2011 Gartner survey use OSS.[13]  When Gartner first started tracking open-source software in the enterprise in 2006, only ten percent of organizations used OSS.[14]  As the comparison of the data in the surveys indicates, OSS has an increasing presence in business and consumer worlds and appears to be here to stay.

The second question providing much discussion a decade ago concerned the enforceability of OSS licenses and what legal remedies were available.  Until the 2009 Federal Circuit case of Jacobsen v. Katzer, some commentators wondered whether the widely used General Public License (“GPL”)[15] and other open-source licenses were legally enforceable.[16]  Since then courts have answered in the affirmative under several legal theories, predominantly under copyright law.

Enforcement actions for and against OSS have increased substantially even as OSS becomes the indispensable infrastructure for online social networks and application programming interfaces (“APIs”) on smartphones.  Enforcement actions have moved from relatively quiet and quickly settled disputes within the OSS community to high-profile Silicon Valley patent cases that pit titans against one another, like Oracle against Google and Yahoo against Facebook.

Part II of this paper describes OSS licensing, along with possible legal theories and remedies for OSS claims.  Part III presents exemplary disputes within the OSS community during the early and mid-2000s that tested legal theories for enforcement of open-source licenses.  In 2009, the Federal Circuit opinion of Jacobsen v. Katzer[17] directly addressed the enforceability of OSS licenses under copyright and contract claims.  Since then, strategic OSS plaintiffs have emerged with commercial interests beyond the OSS community’s primary interest in license compliance.  Part IV describes the large proprietary software companies (“titans”) and litigious non-patent-practicing entities (“trolls”) entering the OSS arena to enforce their patents.  The discussion concludes with observations on how the legal actions of the titans and trolls are affecting the protection and enforcement of open-source licenses, as well as what steps the OSS community is taking to defend itself against such actions.  Part V summarizes what practical and legal defensive maneuvers remain viable within the context of the history of enforcement within the OSS community, and the likely future of increased patent litigation.


II. Legal Theories for OSS License Enforcement

A.   OSS Licensing

Open-source software refers to software products distributed under terms that allow users to use, modify, and redistribute the software under a royalty-free license.  The license requires source-code authors, distributors, and users to comply with certain conditions to keep the software available to others.[18]  In contrast, commercial proprietary software companies generally distribute only object code and hold source code as trade secret under a restrictive license to prevent competitors from further developing or distributing the software.[19]

Open-source software challenges the classic thought about the value of intellectual public goods.  Traditional proprietary software creators use their intellectual-property (“IP”) rights to help monetize their IP and prevent others from using it without a license.  In contrast, creators of OSS generally rely on their IP rights to keep the original software code and any improvements or additions to it free and widely accessible to others.  Open-source software is made available free to the public under a copyright license that allows others to create collaborative projects, to dedicate their works to the public, or to license certain uses of the works while keeping some rights reserved.  Nevertheless, the OSS providers can profit by providing consulting or other services related to the OSS rather than by selling the software or improvements to it.[20]

The General Public License (“GPL”) is the most popular open-source license in use today.[21]  It permits a software designer to modify GPL-licensed code and distribute such modified code, provided that the entire derivative work thereby created by such modification is licensed as a whole under the terms of the GPL itself.[22]

OSS licenses range from permissive to restrictive.  The strength of the license provisions may give more or less permission for the OSS to be incorporated into software licensed downstream under closed source-terms and in binary-only form.  Strong so-called copyleft provisions require the licensee who modifies and distributes OSS to contribute back by licensing the modifications under the same open-source licenses.[23]  For example, the GPL license is a strong copyleft license, and with its third version, the GPLv3, it appears to extend its terms to any modified or derivative work as a whole.[24]  Copyleft, a play on the word “copyright,” is a condition where any modification to the OSS must be in turn licensed under the same open-source license.[25]  The Linux® operating system, probably the best-known example of OSS, is licensed under GPLv2, as an extensive amount of software written runs on Linux® operating system.[26]

B. Legal Theories and Remedies for OSS Claims

OSS licensing may involve contract rights as well as intellectual property rights under copyright, patent, trade secret, and trademark law.[27]  In the past, the OSS community tended to resolve disputes between or among its members before formal legal action, focusing primarily on license compliance.[28]  Typically an OSS license is enforced under copyright or contract law, although OSS has been involved in patent, trademark, trade secret, and unfair-trade-practice disputes that extend outside the OSS borders into the software community at large.

1. Legal Protections for OSS under Copyright and Contract Law
Stronger Protections for OSS License under Copyright Law

Licensing of OSS software might seem to fall most naturally under state contract law.  The remedies under contract law, however, are minimal at best because the monetary damages from freely available software would be little to none.  A copyright licensor normally waives the right to a federal claim copyright infringement against a non-exclusive licensee, and is therefore limited to its contractual remedies for breach of the license agreement.[29]  In other words, a breach of a covenant generally gives rise only to a claim for breach of contract, not copyright infringement.

The Federal Circuit in Jacobsen vs. Katzer[30] (described in Part III-B below) and other courts have ruled that a breach of typical contractual promises (also called covenants or obligations) in a license agreement does not constitute copyright infringement.[31]  A breach of license conditions, however, might constitute infringement.[32]

The exception then to the rule of only contract remedies for software licenses occurs when the licensee breaches a condition of the license, that is, a contractual term on which the licensor conditioned his permission for the licensee to access the copyrighted material.  The condition must have a close nexus to the licensor’s exclusive copyright rights such as copying, selling, and creating derivative works.[33]  In MDY Industries, LLC v. Blizzard Entertainment, Inc., the Ninth Circuit explained that “a potential for [copyright] infringement exists only where the licensee’s action (1) exceeds the license’s scope (2) in a manner that implicates one of the licensor’s exclusive statutory rights.”[34]

With copyright infringement, a licensor has various remedies to pursue, including recovery of lost profits, statutory damages of up to $150,000 per work, injunctive relief, attorney’s fees, as well as enforcement against downstream infringers.[35]  In contrast, violation of independent contractual covenants generally does not give rise to injunctive relief, and permits only limited compensation for direct economic loss, with parties bearing their own attorneys’ fees.[36]  In the open-source context, where software is licensed without charge, a plaintiff may have difficulty establishing economic loss.  Thus, injunctive relief as a copyright remedy may be the only meaningful remedy that open-source licensors have.

In the Jacobsen v. Katzer case described in Part III-B below, the Federal Circuit found that OSS, although made available to the public for free, includes an economic component even though profit is not immediate.[37]  The creator derives economic value from a public license because the creator is able to subsequently improve the software based upon users’ suggestions.[38]  As the software improves, so does the creator’s reputation, and the software is improved even further.[39]

2. Copyright-Ownership Challenges in OSS

The ability to bring a claim of copyright infringement against an allegedly infringing party lies solely with the legal or beneficial owner(s) of the right being infringed.[40]  A few years ago, questions remained about whether OSS works created by multiple authors were joint works, compilations or collections, and whether derivative works may be characterized as joint works, compilations, or derivative works.[41]

The ownership issue of joint authorship was highlighted in the BusyBox cases described in Part III-A below.[42]  Bruce Perens, one of the authors of Busybox software, announced that he did not approve of the litigation that the other authors had filed against Best Buy and others.[43]  He raised the question regarding his own rights as one of the authors of the open-source software.  The answer depends on whether the software is considered a “joint work” or a “compilation” under copyright law.[44]  As with copyright terms, standard copyright categories are often difficult to apply to software.  Under copyright law, if a joint work exists between OSS code writers, then they are co-owners of an undivided interest in the entire work.[45]  One author can use the entire work as he or she pleases without seeking permission from the other joint author(s).  This might include suing over OSS compliance for specific jointly created code, which occurred in the BusyBox cases.

The question of joint authorship extends to another copyright ownership issue on whether OSS programs are compilations or collections.  Code elements that, by themselves, are not copyright protectable because they lack a “modicum of creativity,”[46] may be compiled in a creative way to receive copyright protection.[47]  A “compilation” results from a process of selecting, bringing together, organizing, and arranging pre-existing material of all kinds, regardless of whether the individual items in the material have been or ever could have been subject to copyright.  The selection of what data to include and the chosen arrangement of that data are legitimate candidates for protection under a compilation theory.

By comparison, a “collective work” is a work, such as a periodical issue or anthology, in which a number of contributions, constituting separate and independent works, are assembled into a collective whole.[48]  If OSS were a collective work, then the combined efforts of multiple authors are separate works temporarily joined together.[49]  Anyone using the collected work would require permission from all the authors.  Under the collection theory, all the creators of particular code covered by an OSS license would need to agree before a violator of an open-source license could be sued.  Where many and even hundreds of programmers have contributed to an open-source project, the collection theory quickly breaks down for creating any legally enforceable protection.

Another challenge with OSS ownership concerns the nature of derivative works.[50]  A derivative work, in comparison to the compilation, requires a process of recasting, transforming, or adapting “one or more preexisting works”; the “preexisting work” must come within the general subject matter of copyright set forth in 17 U.S.C. § 102, regardless of whether it is or was ever copyrighted.[51]

Problems may arise when a business either distributes the OSS or a derivative version to an affiliate, to another business external to the business, or in an end product.  This was another issue chronicled in the BusyBox cases.  The challenge is to know what copyleft requirements trigger when someone modifies and distributes an open-source licensed work, and what exactly defines a derivative work.  Unless a modification is licensed under the requisite OSS license, the rights granted under the open-source license are deemed terminated.[52]  The GPL, for example, requires the author of the derivative work to license that new work under the same terms of the GPL.  What constitutes a derivative work is often the main issue of OSS disputes.[53]  The inquiry about whether particular software is a derivative work necessitates a highly fact-dependent analysis.[54]

Distinguished from collective works, joint works of authorship may share similarities with both derivative works and compilations, and could be seen as one and the same but for the intention of the authors.[55]  One author’s recasting, transforming, or adapting of another author’s preexisting work may create either a derivative work or a joint work consisting of inseparable parts.[56]  Similarly, depending on the intent of the authors, the assembling of the works of several different authors into a collective whole may create either a compilation or a joint work consisting of interdependent parts.[57]  The general consensus now within the OSS community is that OSS projects are joint works, and as they are modified, they become compilations or derivative works.  In other words, code creators are co-owners with an undivided interest in the code, and they must comply with terms of the license under which they contributed to the code.

3. Potential Legal Minefields for OSS under Patent Law

The open-source community as a whole opposes patenting of software.  While debate about whether software should be patentable is beyond the scope of this paper, understanding why the community opposes patenting of software helps give a context for recent conflicts between patent holders and copyright owners of OSS.[58]  Patent infringement can occur even if the infringer has never heard of or been in contact with the patented invention.  An independently created useful work can infringe a patent if determined to be the same as the claimed invention.  Thus, a software programmer may infringe a patent accidentally or incidentally by independently creating a software product with similar features as the infringed invention.  In other words, patent infringement requires no willfulness on the part of an OSS creator.  By comparison, copyright infringement requires that the infringer have at least had some contact or connection with a copyrighted work to have infringed that work.  Independently created works do not infringe one another’s copyrights.

From the perspective of many OSS and proprietary software programmers, the patent system has become a minefield for innovators who accidentally infringe one or more of the hundreds of thousands of active software patents.[59]  Given that a few lines of similar code can lead to patent infringement, the amount of legal research required to compare every line of a computer program against every active software patent is astronomical.  Further, since software patents rarely provide any lines of code from which to compare, affirmative steps to avoid possible patent infringement is a near impossible task.  OSS creators have been pulled into a growing number of patent-infringement cases in recent years as an inevitable result of OSS’s higher profile and monetary value in the software industry.

4. Added Legal Protection for OSS under Trademark Law

While the vast majority of OSS disputes focus on either copyright or patent rights, other intellectual property rights including trademarks may come into play.  Trademarks are important for branding particular OSS code.

As a recent example, Alev O. Karasulu, the founder of the Apache Directory Server Project, filed a complaint against Red Hat in 2011 alleging various claims, including a request to cancel a trademark registration of “Penrose.”[60]  As the owner of Identyx, Inc., Jim Yang, had approached Karasulu earlier about the development of open-source virtual-directory software, and Karasulu offered to develop the software as an OSS project.[61]  Karasulu used the name “Penrose” for the virtual directory OSS project beginning in 2005.  In 2008, Yang filed an application to register the trademark “Penrose” for software through Identyx, Inc., which he subsequently sold to Red Hat.  The dispute resolved quietly, with Karasulu voluntarily moving for dismissal with prejudice.[62]

Besides traditional disputes concerning the use of trademarks, a few courts in early OSS cases considered whether the GPL itself was functioning as a trademark.  In 2001, Progress Software Corp v. MySQL AB tested the enforceability of the GPL.[63]  Because of the software’s GPL notice, the court granted a preliminary injunction under the theory of trademark infringement, enjoining Progress and its subsidiary NuSphere from, among other things, sublicensing or distributing the MySQL program under the MySQL trademark or using the MySQL trademark.[64]

Also in 2001, the Eleventh Circuit Court of Appeals in Planetary Motion, Inc. v. Techsplosion considered the GPL licensing notices as evidence of the trademark owner’s intent to control the use of its mark, CoolMail.[65]  The Eleventh Circuit Court of Appeals found that the plaintiff intended to use the CoolMail mark as a trademark, and used it in a way sufficiently public to create ownership rights in the mark.[66]

Few legal analysts now would consider the GPL notices positioned within the OSS source code to function as trademarks.  Since the early OSS-related cases like Progress and Planetary, the connection between open-source licensing and related trademarks is better understood.  Currently, Red Hat and other OSS software companies consider their husbandry of trademark rights to be alongside their enforcement of open-source licenses.[67]  The GPL notices themselves, however, are not considered to function as trademarks.

The recent dispute over the Koha trademark between Horowhenua Library Trust (“HLT”) of New Zealand and a U.S. company, PTFS, illustrates the importance of trademark protection to open-source projects.[68]  HLT manages the Koha open-source project.[69]  PTFS filed for trademark protection for Koha in New Zealand after it had acquired LibLime, which used the trademark.[70]  LibLime provides library services associated with Koha software.[71]  Subsequently, PTFS agreed to transfer the trademark to HLT on condition that HLT would not restrict anyone’s use of the trademark associated with the Koha OSS.[72]  This trademark dispute follows other Koha community concerns over whether LibLime has sufficiently contributed software patches and other content back to the community.[73]  Nevertheless, the dispute over the trademark Koha is distinct from the issue of license compliance.

The aforementioned cases involving the trademarks of “Penrose,” “CoolMail,” and “Koha” show that proper use of trademarks can be as important to the OSS community as they are to proprietary software developers and vendors.  OSS applications can develop reputations as users increasingly associate an application’s name with a particular standard of quality or a set of features.[74]  Trademark law help protects the relationship that an OSS project develops with its users.[75]  The law also allows an OSS project to maintain a certain amount of control over the use of its brand.[76]

5. ITC 337 Action as Uncommon Legal Protection for OSS

Where international trade of OSS is involved, OSS licensors might pursue a little-used enforcement action that is more commonly associated with patents.  If violations of OSS licenses occur as unfair practices in import trade, OSS licensors could file an action with the United States International Trade Commission (“ITC”), as authorized by Section 337 of the Tariff Act of 1930.[77]  When the ITC finds an unfair-trade violation, it issues an order directing that infringing goods be excluded from import into the United States.[78]  Border enforcement of copyrights by the U.S. Custom and Border Protection (“CDP”) requires that copyrights have been registered with the Library of Congress and also recorded with the CBP.[79]  A successful ITC action would enjoin the importer from unfair trade of open-source software.[80]

III. Enforcement Within the OSS Community

Most open-source disputes leading up to the 2009 case of Jacobsen v. Katzer settled out of court.  Up until the mid-2000s, the OSS community typically treated their disputes differently from those of other intellectual property holders because the community primarily focused on license compliance.  When members of the OSS communities pursued enforcement, it often occurred through public peer pressure rather than through legal channels.[81]  By the mid-2000s, a small yet growing number of OSS disputes led to more formal enforcement actions.  These early cases presented a variety of claims—some more successful than others—that laid the groundwork for the enforcement actions seen today.

A.                               Software Freedom Law Center Enforces OSS Licenses

As the use of OSS increased, the OSS community members saw greater need to protect OSS so that the OSS coders would have the continued ability to modify and improve the licensed original works.  The Software Freedom Law Center (“SFLC”) and other OSS advocacy organizations determined that they needed to make OSS users understand the obligations imposed by the GPL and to enforce the obligations through litigation if necessary.  The SFLC has led the development and enforcement of the GPL.[82]

Not until 2007 did anyone file a U.S. lawsuit concerning a violation of the GPL.[83]  The SFLC began filing a series of lawsuits in 2007 on behalf of Erik Andersen and Rob Landley, two authors of BusyBox software.[84]  In the first lawsuit, SFLC sued Monsoon Multimedia.  The complaint alleged that Monsoon Multimedia distributed the OSS-licensed BusyBox by embedding it within the hardware of Monsoon’s media devices and within downloadable firmware without providing the source code as required under the terms of the GPLv2.[85]  The SFLC dismissed the lawsuit when Monsoon agreed to appoint an open-source compliance officer, publish the source code, notify previous recipients of the availability of the source code, and pay an undisclosed financial consideration to the developers of BusyBox.[86]

The successive BusyBox cases followed a similar pattern in settlement and became the archetype of OSS settlement agreements.  The series of BusyBox suits included the defendants Xterasys Corporation and High-Gain Antenna, LLC,[87] Verizon,[88] Supermicro,[89] Bell Microproducts, Inc.,[90] Extreme Networks, Best Buy Co., Samsung Electronics Americas, Inc., Westinghouse Digital Electronics, LLC, JVC Americas Corp., Western Digital Technologies, Inc., Robert Bosch LLC, Phoebe Micro, Inc., Humax USA, Inc., Comtrend Corp., Dobbs-Stanford Corp., Versa Technology, Inc., Zyxel Communications Inc., Astak, Inc., and GCI Technologies Corp.[91]  The suits were based on claims of copyright violations of the GPLv2 in a variety of consumer electronic products, such as DVD players and televisions.  Like the earlier Monsoon case, the defendants agreed in the later BusyBox cases to comply with the OSS license as well as to appoint an open-source compliance officer, publish the source code, notify previous recipients of the availability of the source code, and pay an undisclosed financial consideration to the developers.

In 2009, the SFCL filed its first OSS case not associated with BusyBox, Free Software Foundation, Inc. v. Linksys, Inc.[92]  The Free Software Foundation (“FSF”) as copyright owners alleged that Cisco violated copyright law by distributing FSF-copyrighted programs through the sale of Linksys wireless routers, without satisfying the terms of the GPL and Lesser GPL licenses.[93]  The parties settled in 2009 with an agreement that appears similar to those in the BusyBox cases.[94]  The settlement provided that Cisco would appoint an OSS compliance director to ensure compliance, and pay an undisclosed financial contribution to the FSF.[95]

B.   Federal Circuit Finds OSS License Enforceable Under Copyright Law

Viewed as a victory for open-source licensing, the 2009 federal case of Jacobsen v. Katzer provided the first written court opinion in the United States that directly concerned open-source licensing law.[96]  The case strengthened the legal underpinnings of free and open source/open-source software (“F/OSS”) because it addressed the fundamental question of remedies available to OSS developers.[97]  Jacobsen brought claims under both contract law and copyright law.[98]  For breach of contract, monetary damages are common and injunctions rare.  For copyright infringement, remedies include injunctions to stop development and distribution of infringing products, and statutory damages of up to $150,000 per infringed registered work if a defendant willfully infringed the copyrighted work.[99]  The Court of Appeals for the Federal Circuit (“CAFC”) nonetheless set a high standard for injunctive relief in cases of OSS license breach.  The district court on remand did not grant Jacobsen an injunction because he failed to demonstrate that he was likely to suffer irreparable harm.[100]

C.         Commercial OSS Vendors File Lawsuits Over OSS License Violations

As OSS-related companies became profitable in the mid-2000s, litigation became a viable option for OSS enforcement when informal attempts to gain license compliance failed.  As a private company, Artifex filed some of the first lawsuits to enforce the GPL.  In 2008, it sued Diebold, Inc., the parent corporation of Premier Elections Solutions, Inc. and quietly settled.[101]  In 2009, Artifex brought claims against Palm, Inc. and other defendants in an action related to its MuPDF software, a PDF rendering engine that includes a small PDF interpreter for the personal-digital-assistant and e-book markets.[102]  The case with Palm was terminated in early 2011.[103]

Artifex used a “dual licensing” model, providing the software under both the GPL and a commercial license.[104]  Artifex offers an example of how commercial open-source companies could provide two types of software products where the rights available under an open-source license did not include the value of the additional protections, performance warranties, support, and indemnification available under the commercial license.

D.   Red Hat Settles to Protect Upstream and Downstream OSS Users

The Firestar Software, Inc. v. Red Hat, Inc. case demonstrates the additional issues that open-source companies must consider when settling a patent infringement case.[105]  Red Hat’s $4.2 million settlement agreement with Firestar Software, Inc. and DataTern, Inc. may provide a model for future patent-OSS cases.[106]  FireStar had asserted infringement of its patents.[107] In 2006, FireStar Software filed a lawsuit with the U.S. District Court for the Eastern District of Texas, alleging the infringement of a patent related to linked databases (U.S. Patent No. 6,101,502) by Hibernate, a JBoss™ OSS product.  Firestar filed the suit a couple months after Red Hat announced it was acquiring JBoss.[108]  Unlike traditional patent settlements, Red Hat negotiated for the settlement to cover other members of the OSS community including upstream licensors of the Red Hat product and downstream licensees.[109]

Profitable OSS vendors like Red Hat are recognizing that their IP settlements for open-source products have wide-ranging implications for other OSS licensees.  This adds to the complexity of how a settlement agreement might be structured in order to provide protection for former, current, and future users of particular open-source code, and any past or future modifications of that code.[110]

E.    Patents Enforced Against Open-Source Software

The flood of software patent litigation in the last decade has inevitably spilled over into the OSS world, in part because Internet vendors and social networks such as the Internet titans of Amazon, Google and Facebook use OSS within their web servers.  More than 40,000 software patents are granted each year and no source including the United States Patent and Trademark Office (“USPTO”) provides any effective cataloging of software patent claims.[111]  Analysts now conclude it is impossible for software firms to do effective freedom-to-operate searches to void infringing software patents.[112]  Thus, inadvertent patent infringement among millions of software authors seems inevitable.  Yet in 2006, Nathan Myhrvold, the Microsoft veteran who founded the mass patent aggregator Intellectual Ventures (described in Part IV-B-4 below), complained about the “culture of intentionally infringing patents” in the software industry.[113]

IV. Patent Titans and Trolls Enter the OSS Community

Open-source software has become part of the mainstream software industry and a major underpinning of the Internet-cloud infrastructure.[114]  Big Internet companies are writing or adopting open source with enthusiasm, after years of enterprise powered by proprietary software infrastructure from Microsoft, Oracle, HP, IBM, and others.[115]  Internet companies are scaling up much of their cloud-computing hardware infrastructure with OSS and commodity hardware.[116] Many smartphones and other mobile devices run on OSS like Google’s Android™ operating system.[117]  Even Microsoft has contributed code to the Linux® OSS.[118]

One of the results of the open-source explosion is that large software- and Internet-enabled companies are battling more frequently in patent infringement suits or open-source licensing enforcement.[119] Meanwhile, small OSS players are getting hit in the patent cross-fire and are now receiving their own invitations from patent-holding companies such as Lodsys to license certain patents to avoid being sued.

A.   Titans Build Upon and Fight Over Open Source

At some point in the last ten years, Microsoft and other software giants recognized that their companies were coming under siege by the burgeoning open-source movement.[120]  Today’s computer programmers may go through college and software-specific educational programs writing programs predominantly on non-Microsoft and other non-proprietary software, further chipping away at the previously dominant operating-system-specific software applications and providing new generations of programmers and developers with open-source alternatives.

1. Microsoft, the Elder Titan

The elder titan Microsoft, holder of around 18,000 patents,[121] has approached the OSS community with seemingly inconsistent treatment of both attacks and truces since 2000.  Microsoft has not directly pursued its claim that Linux® software and other OSS violate 235 Microsoft patents.[122]  Yet Linux® users express concerns that if the Windows desktop marketshare were to erode, Microsoft would threaten Linux® directly with lawsuits.[123]  As one demonstration of a dualistic foe-or-friend approach to OSS, Microsoft was asserting that the Linux® operating system violated Microsoft’s patents while submitting two OSS licenses for the approval of the Open Source Initiative,[124] which were approved as complying with the OSS licensing requirements.[125]

Perhaps adding to confusion, Microsoft itself is a licensee of and contributor to OSS.  For example, it acknowledged a failure to comply with the GPL in its distribution of the Windows 7® USB/DVD Download Tool.[126]  In another example, Microsoft contributed three drivers to Linux® software under the GPLv2.[127]  In April 2012, the Linux Foundation[128] reported that Microsoft was in the top twenty of Linux® kernel contributors.[129]

Beginning in the early 2000s, the Microsoft’s business strategy reportedly included financial support for litigation to spread fear, uncertainty, and doubt (“FUD”)[130] about open-source software.[131]  In several well-publicized cases, the SCO Group, Inc. (“SCO”) sued International Business Machines (“IBM”),[132] Red Hat,[133] Novell,[134] AutoZone,[135] and Daimler-Benz.[136]  In 2003, SCO sent letters to about 1,500 major corporations that used Linux® code informing them of SCO’s infringement claims and stating that it intended to aggressively pursue enforcement of its intellectual property rights.[137]  The long string of legal actions began in 2003 and a jury in 2010 returned a verdict in SCO v. Novell, finding that Novell owned the copyrights at issue.[138]

The SCO cases highlight problems that can result if a licensee allegedly incorporates proprietary or patented software into the GPL software and then redistributes it to the public.[139]  SCO claimed that that IBM as licensee incorporated SCO’s patented software into IBM’s Linux® project during a failed collaboration attempt to produce an advanced version of Unix for Intel’s Itanium processor.[140]  In the process of slow death, SCO filed for Chapter 11 bankruptcy (reorganization) in 2007, which the bankruptcy trustee moved to convert to Chapter 7 bankruptcy (liquidation) in 2012.[141]

2. Oracle and Google Battle over the Android™ Operating System

Open-source software entered center stage in the worldwide patent wars with the Android™ operating system, which was released under the Apache Software License 2.0 in 2007.[142]  Recent Android®-related patent cases involve a wide variety of parties, including Motorola Mobility, HTC, Samsung Electronics, Oracle, Google, Facebook, and Yahoo.  Offensive patent suits as well as defensive patent acquisitions are in full action.

In titanic defensive maneuvers, Google has been buying new patents aggressively for its patent portfolio, as demonstrated in its purchase of Motorola Mobility, Inc.[143]  Google says that its purchase of Motorola Mobility will give it thousands of patents to use as protection in legal cases concerning smartphones running Google’s Android™ operating system.[144]  Google offers the Android® operating system under an open-source license for use in smartphones, computer tablets, and other small mobile devices.[145]  Google has turned Android™-related software into the foundation of a mobile-phone empire, with worldwide phone carriers offering an ever increasing array of Android™-run phones.[146]  Yet Google heretofore seemed somewhat handicapped by its lack of patents to assert in defense of the Android™ operating system, which employs the Linux®  kernel.[147]

In 2010, Oracle sued Google in part because Google’s Android™ operating system allegedly infringed Oracle’s copyrights and patents of covering its Java® software, which it acquired from Sun Microsystems, Inc. that same year.[148]  Oracle claimed that the Android™ operating system infringed two patents (eight claims) and copyrights in thirty-seven Java® application programming interface packages (“APIs”).[149]

Oracle’s action was the first of the “smartphone war” cases tried to a jury.[150]  The jury found that Google did not infringe the asserted claims of the two patents.[151]  Nevertheless, the jury found that Google infringed nine lines of code called “rangeCheck,” but deadlocked on whether Google’s use constituted “fair use.”[152]  Judge Alsup later ruled that copyright does not protect the structure, sequence and organization of the API elements at issue.[153]  Applying the Ninth Circuit decisions of Sega Enterprises, Ltd. v. Accolade, Inc. (1992) and Sony Computer Entertainment, Inc., v. Connectix Corporation (2000), the court reasoned that procedures required for interoperability of APIs were “functional requirements for compatibility,” and therefore as a “system or method of operation” it did not constitute copyrightable expression under Section 102(b) of the Copyright Act.[154]  Suggested by the Oracle v. Google ruling, APIs of Java® and other object-oriented languages might appear to have limited or no copyright protection, thus clearing the way for access of the Android™ operating system to most of Java® technologies under the GNU General Public License.[155]  Yet this district court case will not be the last word on the Android™ operating system, since Oracle intends to appeal case, and numerous Android™-related cases are docketed in the U.S. and worldwide.[156]

3. Patents as Weapons and Armor in the Titan Fight

Younger as well as more established titans are taking offensive and defensive positions even as patent litigation enters the OSS arena.  One such example is Facebook where open source has been a key part of its success story.  It and other online and cloud services have cut costs by using Linux® code on commodity hardware.  On top of OSS infrastructure may be proprietary technology and both may be targeted with patent lawsuits.[157]  Recognizing such vulnerability, Facebook recently acquired 750 patents from IBM to cover “software and networking” technologies in a defensive move.[158]  The deal came at a time when Facebook was under fire from Yahoo! with a suit alleging Facebook infringed ten Yahoo! patents concerning Internet advertising optimization, privacy, customization, networking, and messaging innovations.[159]  The case was dismissed four months later.[160]

Suits between titans are not uncommon.  Back in 2004, Yahoo! sued Google for patent infringement by claiming infringement of ten patents, and received $201 million in settlement from Google.  Patents are used as weapons and arsenal in the multi-front battle areas of mobile and cloud computing and inevitably are hitting some OSS targets.[161]

B. Trolls See Attractive Open-Source Targets

Patent-assertion entities (“PAEs”), as a subset of nonpracticing entities (“NPEs”),[162] are often led by patent attorneys who see opportunities to acquire patents and then sue businesses that are allegedly infringing those patents.  PAEs, like modern-day mythical trolls hiding under IP bridges, buy IP created by others and then opportunistically extract licensing fees as a form of bridge toll.[163]

Patent lawsuits involving PAEs have increased dramatically over the last decade with the number of PAE-instigated patent lawsuits in the United States increasing by an estimated average of more than thirty-three percent per year since 2004.[164]  Software patents may account for over ninety percent of troll’s most-litigated patents.[165]

Software patents can have unpredictable claim interpretation, unclear scope, and questionable validity, in part because the patents rarely include actual code, often describing the software only in broad and general terms of functionality.[166]  As a result, the blurred boundaries of these patents provide greater opportunity to extract rents from software companies.[167]  Businesses have difficulties retaliating with countersuits against trolls because trolls typically hide under the bridge with no related operating businesses.  Combining this with access to market funding for IP acquisition and lawsuits, IP litigation has become a viable troll business plan.[168]  The open-source industry provides a tempting target because of its rapid growth, and profitable OSS vendors such as Red Hat have become troll targets.

While the IP Innovation and Bedrock cases discussed below may not be legally significant by themselves, they represent a growing trend for trolls—non-patent-practicing, patent-assertion companies—to aggressively sue a wide range of companies for patent infringement in East Texas.  They have extended their reach into the space of open-source software and not just proprietary software.

1. First Patent-Troll Infringement Lawsuit Against an OSS Vendor

IP Innovation LLC, one of the many subsidiaries of Acacia Research,[169] along with Technology Licensing Corporation filed suit in 2007 against Red Hat and Novell in what may be the first patent-troll lawsuit against an open-source licensor or vendor.[170]  IP Innovation asserted that Red Hat and Novell infringed four claims from three U.S. patents that share a common disclosure title of “User interface with multiple workspaces for sharing display system objects.”[171]  IP Innovation sought royalties on all sales of Linux® software-based products, but received none because a Texas jury found all asserted claims as invalid and thus found no patent infringement.[172]  For this case as with other cases against OSS vendors, the OSS defendant requested and received help from the OSS community to find prior art that would help to invalidate the asserted patents.[173]

2. Bedrock Computer Technologies Trolls Many with One Patent

In Bedrock Computer Technologies, LLC v. Softlayer Technologies, Inc., Bedrock sued Softlayer Technologies, Inc., CitiWare Technology Solutions, LLC., Google Inc., Yahoo! Inc., MySpace Inc., Amazon.com Inc., PayPal, Inc., Match.com, Inc., AOL, LLC, and CME Group Inc.[174]  Bedrock claimed that each of the defendants, in using the Linux® kernel on their servers, infringed its U.S. Patent No. 5,893,120, entitled “Methods and Apparatus for Information Storage and Retrieval Using a Hashing Technique with External Chaining and On-the-Fly Removal of Expired Data,” by using Linux® OSS.  In 2011, a jury reached a verdict that plaintiff Yahoo! did not infringe Bedrock’s patent.[175]

Months earlier, Bedrock was somewhat more successful in suing Google for infringing the same patent.  The jury decided that Google’s use of the Linux® kernel in its servers infringed the patent and awarded Bedrock $5 million, which is a small toll in the context of Google’s market value.[176]  Nevertheless, any court ruling of infringement against the Linux® kernel has the potential to affect millions of users of open-source software.  For example, hundreds of millions of mobile devices such as smartphones and tablet computers run on the Android™ Linux®-based operating system.[177]

Bedrock points out another growing trend in the patent litigation arena, which is now expanding into the open-source community: patent attorneys building businesses out of acquiring patents and suing businesses allegedly infringing those patents.  As an example, David Garrod, the owner of Bedrock, was the trolling patent lawyer responsible for the litigation of activities of the Texas-based Bedrock.[178]

3. One Patent Attorney Trolls for Many

A prime example of one attorney trolling for many is Erich L. Spangenberg.  As mentioned above in Part III‑D, Red Hat settled patent infringement claim with Firestar, Inc. for $4.2 million.  Datatern, Inc. v. Foley & Lardner, LLP, the subsequent legal malpractice suit against Firestar’s dismissed attorneys, revealed the involvement of Erich and Audrey Spangenberg in Firestar Inc. v. Red Hat Inc.[179]  Erich Spangenberg owns patent-holding companies and “has advised patent owners of all sizes on hundreds [over 500] of enforcement, acquisition and monetization transactions.”[180]  Foley asserts that Spangenberg received an eighty percent contingency fee of $3.4 million from the Firestar settlement.[181]

4. Intellectual Ventures as the Titan Troll

Back in 2006, Bruce Perens, as the creator of the Open Source Definition and the manifesto of Open Source, opined that business operations like Intellectual Ventures LLC[182] could cripple open-source software.[183]  He suggested that Intellectual Ventures was “a litigation factory in the making” and speculated that Intellectual Ventures would begin by targeting small and medium-sized businesses, which would choose to pay a license fee rather than face an expensive patent infringement lawsuit.[184]  As the world’s largest patent aggregator, Intellectual Ventures controls an estimated 30,000 to 60,000 patents worldwide.[185]  With much of its activities shrouded in secrecy, Intellectual Ventures buys and sells patents in an effort to monetize intellectual property.[186]  The power of its massive patent portfolio is recognized by many and even the United Nations.[187]

At this point, Intellectual Ventures may not to be targeting smaller businesses directly, but associated firms like Lodsys Group, LLC are.[188]  Lodsys Group, LLC has built a reputation in the mobile-software industry.[189]  Lodsys sent letters in 2011 to a number of small mobile application (“app”) developers claiming infringement on at least one of the four patents it acquired from Intellectual Ventures.[190]  Lodsys then embarked on a series of lawsuits in Marshall, Texas.[191]  Lodsys originally targeted iOS® developers but then expanded to Android™ and game developers along with other technology companies, claiming that the defendants’ in-application purchases, feedback forms, cross-promotional links, and other methods of storing user data infringed claims of its patents.  Apple’s iOS® and Google’s Android™ operating system provide in-application purchasing and upgrade functionality to application developers.[192]

Intellectual Ventures’ association with Lodsys suggests that Lodsys might be one of its roughly 1300 shell companies, some of which have asserted patents that were acquired from Intellectual Ventures.[193]  From the perspective of many software designers, the normal business operation of patent aggregators like Intellectual Ventures is to extract pre-litigation settlements by sending demand letters, engaging in license negotiations, and entering into non-exclusive licenses in exchange for a fee.[194]  Lodsys has been successful in such a plan, reporting over one hundred licensees.[195]

The OSS community is particularly concerned about Lodsys “going after small developers and effectively trying to extract multiple royalty streams from the same infringement . . . .”[196]  Groklaw.net, a well-known resource for the OSS community, has encouraged OSS community members to gather up prior-art references that can be used to help invalidate the Lodsys patents.[197]

Apple responded to the Lodsys suit against Apple’s iOS® application developers by requesting and receiving court allowance to intervene in the case.  Meanwhile, Google responded to the suit against Android™ application developers by requesting an USPTO inter partes patent re-examination[198] for U.S. Patent Nos. 7,222,078 and 7,620,565, the two patents that Lodsys asserted against Android™ application developers.[199]

One might question whether it makes sense for Lodsys to sue small application developers, given little money to be made with such suits.  Yet the threat of suits likely resulted in many of the over one hundred parties licensing the patents of Lodsys.  The suits against defendants such as the small software and graphic design company Iconfactory[200] might have been used to set an example and demonstrate the determination of Lodsys.[201]  The mobile application ecosystem, which includes open-source software projects, seems to be large enough of an opportunity for Lodsys to pursue.

C.   OSS Community Maneuvers Defensively

Despite the OSS community’s general aversion to software patents, the high-money patent litigation has entered the OSS arena.[202]  Open-source participants see the need for defensive strategies against unwarranted assertions of patents against those in the open-source community as well as software industry in general.  Extensive software patent portfolios of titan companies or trolling patent aggregators may pose major threats for patent misuse “because of the questionable nature of many software patents generally and because of the high cost of patent litigation.”[203]  Bilski v. Kappos[204] affirmed software’s continued patentability in the United States and its increasing rent-seeking value.

Various proposals and methods have been suggested and tried for dealing with problematic patents before any patent is asserted offensively.  Among the defensive strategies are: (1) inserting so-called “patent peace provisions”[205] into OSS licenses that require licensees to avoid patent conflicts among OSS contributors; (2) encouraging patent pledges where OSS community members who hold patents promise not to enforce their patents;[206] (3) forming groups that collect pools of patents to assert against offensive threats to the community; (4) publishing code to serve as invalidating prior art against future patent applications or patents averred in litigation; and (5) granting defensive patent licenses through a distributed network of OSS patent owners.[207]

Once threatened with patent-infringement litigation, OSS licensors and licensees also may maneuver defensively by (6) filing inter parte or ex parte applications for patent re-examination or review[208] on patents asserted in lawsuit threats or actual lawsuits; and (7) asserting their own patents or gaining access to others to counter the ones asserted.

1. Patent-Peace Provisions

While most of the defensive strategies have targeted patent litigation coming from outside the OSS community, a “patent peace provision” is a promise not to sue within the community.  The patent peace provision requires any licensee of an OSS license to forgo patent lawsuits against the licensor, and terminates both copyright rights to use the software, and patent rights in the program if a user proceeds with patent litigation against the licensor.  The GPLv3 and Apache 2.0 licenses have patent peace provisions, thereby addressing the possibility of OSS developers pursuing patenting.

Patent-peace provisions provide some security from patent threats of known OSS licensees, but much like the patent pledge model described below, the benefits are limited to users of the license or technology at issue.  Further, the benefits are limited by the provisions having no clear mechanism to identify the patents that are specifically subject to the peace protection.  How well these types of provisions would hold up under legal challenge is unknown because no patent-peace provision has been tested in court.[209]  Some validity challenges, for example, might occur for later-acquired or sold patents where third parties claim no privity existed with the original licensee.[210]

2. Patent Pledges

The second defensive patent strategy, patent pledges, consists of promises by patent holders that they will not enforce their patents under certain conditions.  While yet untested in court, the pledges appear enforceable under the legal theories of estoppel (by showing reliance on the pledges), or of implied license (by showing lawful acquisition and use of the patented technology).[211]

Some software companies who hold significant patent portfolios have made non-aggression pledges to the free software community.  Professors Schultz and Urban note that patent pledges often represent large actors such as IBM to meet OSS cultural expectations and allay fears of patent threats from companies who may want to join the OSS community.[212]  The pledges have varied in scope.[213]

Practically speaking, patent pledges or pools by large companies might have little effect if the companies pledge only their less valuable patents and retain the more valuable ones or future ones.[214]  Some observers suggest the original patent-pledge and patent pool concepts have failed and are used primarily for public relations.[215]  Thus, patent pledges have been viewed with at least some skepticism.[216]

3. Patent Protection Groups with Defensive Patent Portfolios

The third defensive patent strategy involves patent protection groups that pool their IP resources for the primary purpose of patent defense.  Facebook, HP, Rackspace, Juniper, Fujitsu and dozens of other organizations have joined the Open Invention Network (“OIN”), the prominent group building a defensive patent portfolio to protect Linux®-using members from potential lawsuits.[217]

The OIN owns a portfolio of around three hundred patents and has licenses to more than 2,000 patents in an attempt to protect the Linux® community from IP lawsuits.[218]  The group makes its patented technology “available royalty-free to any company, institution, or individual that agrees not to assert its patents against the Linux System.”[219]  Facebook, Hewlett-Packard, Rackspace, Juniper, Fujitsu and dozens of other organizations have joined the OIN.[220]

Having received fiscal or IP donations from IBM, NEC, Novell, Philips, Red Hat, Sony and others, OIN stands ready for battle and assert its pool of patents to neutralize or diminish a patent threat against the Linux® operating system.[221]  In comparison to the defensive patent-holding companies of Allied Security Trust[222] and the RPX Corporation that both indicate they may sell but only use patents defensively,[223] the OIN holds its patent portfolio defensively to shield its own members, but says it will also wield the portfolio sword offensively against litigation that is brought by other companies against Linux® software.[224]

4. Defensive Publications and Republications of Prior Art

The fourth defensive strategy for OSS is publishing or republishing prior art.  Defensive publication focuses on creating prior-art documentation that is accessible to the public and perhaps more importantly, to patent authorities such as the USPTO.  Such published prior art may be used against future patent applications that try to claim the covered OSS technology.  Under 35 U.S.C. §§ 102 and 103, a U.S. patent cannot be granted for an invention that is not novel or has been anticipated by publicly disclosed information relevant to the novelty of the software code.  Defensive republication of prior art occurs when prior-art contributions are solicited from the OSS community to provide information that might invalidate a patent issued in error because the USPTO had insufficient access to relevant prior art.

A program targeted specifically at protecting OSS is called Defensive Publications, a component of the Linux Defenders program.[225]  It documents the OSS that has not been patented so that the OSS can be brought to the attention of a patent authority such as the USPTO to help prevent patents from later issuing on the same software code.[226] OIN conceived Defensive Publications and co-sponsored the program with the SFLC and the Linux Foundation.[227]

The aforementioned organizations sponsor programs that republish prior art.  The “Peer-to-Patent” and “Post-Issue Peer-to-Patent” programs solicit prior-art contributions from the OSS community to give patent examiners access to prior art relevant to software patent applications that they are examining.[228]  “Post-Issue Peer-to-Patent” programs solicit prior-art contributions that might help invalidate a previously issued patent where a patent office lacked the access to relevant prior art.[229]

Other more general databases are being developed as repositories for prior-art and technology disclosures.  For example, the Prior Art Database of IP.com is a text-searchable database that allows people to defensively publish ideas often as technical disclosures.[230] The database is made available to patent office examiners and the public for prior-art searches.  The underlying principles of defensive publication, whether through the Linux Defenders program or the more generalized Prior Art Database, comport with traditional principles of OSS such as public access to knowledge and a distributive structure.

5. Defensive Patent Licenses

The fifth promising yet untested patent defense strategy is the defensive patent licensing model proposed by Professors Jason Schultz and Jennifer Urban.[231]  As applied to the OSS community, defensive patent licensing is a distributed network of OSS patent owners.  In simple terms, every member of the network grants a standardized royalty-free patent license to every other member in the network, and commits all patents to one hundred percent defensive purposes.[232]

One of the chief reasons why the professors think a defensive patent license (“DPL”) might be effective, and if adopted, is that it would address the concerns that OSS developers have with patents, similar to the way that the GPL addressed their concerns with copyright.[233]  Another reason is that the DPL could be used as norm setting like the GPL where licensors and licensees might have a general understanding of how to behave well and “do good.”

The DPL takes the concept of a defensive patent pool one step further and requires a greater commitment from its members.[234]  The professors modeled the DPL after a standardized open patent license, blending the general strategy of defensive patenting with the OSS values of openness and freedom.[235]  They also used an OSS-inspired, decentralized and standardized IP license format to distribute costs and benefits, and to provide a legally binding commitment to defense.[236]  The DPL would be irrevocable unless (1) the licensee sues the DPL users offensively; or (2) the licensee stops offering its own licenses under the DPL.[237]  The professors suggest that a licensor might stop participating in the DPL with appropriate notice such as six months, but that the previously issued licenses would remain in effect.  Also, reciprocal DPLs could be revoked at licensors’ discretion.[238]

Some of the concerns that reviewers of the DPL have expressed to the professors include (1) insufficient incentives for OSS community members to patent or to join a DPL; (2) the large commitment of company’s entire patent portfolio; (3) potential anti-trust issues particularly in the European Union; and (4) the potential for gaming or free-riding the system.[239]  Under the DPL, a licensor would license its entire portfolio under a nonexclusive, royalty-free perpetual worldwide license to all DPL users.[240]  While few long-established companies are likely to adopt such a model, a growing number of small OSS developers might be attracted to band together under a DPL in the spirit of freedom similar to that of the OSS movement’s early days.

6. Inter parte and Ex parte Patent Reexaminations and Reviews

The sixth patent defense strategy is to request USPTO reexaminations and reviews of patents being used offensively against OSS.  Only rarely have OSS community members used the reexamination or review procedures at the USPTO to help invalidate a patent asserted against them or other members of the OSS community.  For example, in 2007 before it was acquired by Oracle, Sun Microsystems filed a inter parte reexamination request for a patent that Firestar had asserted against Jboss and Red Hat, as described in Part III-D above.[241]  As another example, Google requested a patent reexamination to help its application developers who were sued by Lodsys LLC, as described in Part IV-B-4 above.

In the Leahy-Smith America Invents Act (“AIA”) enacted into law in September 2011, Congress overhauled procedures before the USPTO, designed to provide less expensive alternatives to litigation that might address invalid patent claims.[242]  Thus, OSS developers may have several revised or untested tools to use at the USPTO to fight patent assertions: inter parte examination, ex parte review, and post-grant review.

The three types of USPTO review differ in cost and the role that the third-party has after filing the request for reexamination or review.  The first tool, an ex parte reexamination, will cost a proposed minimum fee of $17,760 for a large entity starting in 2013.[243]  The role of the third party is over once the ex parte reexamination is submitted.[244]  The ex parte reexamination procedures are much like those of a normal patent application, with the patent examiner issuing office actions.

With the second tool, the AIA revised the inter partes review under 35 U.S.C. § 311, where a third-party challenger may participate and will no longer be barred from appealing issues raised and decided, and even issues that could have been raised in the administrative proceeding.  The inter partes requester will pay a proposed minimum fee of $27,200 starting February 2013.[245]  The third party may request a review of a patent (whose original application was filed on or after November 29, 1999) to challenge the patentability of any claim based solely on prior-art patents and printed publications, and limited to novelty or non-obviousness grounds.[246]

The third tool, effective September 16, 2012, is the post-grant review under 35 U.S.C. § 321 where a third party can challenge the validity of an issued patent.  Post-grant review must be initiated within nine months of the issuance of a patent or reissue patent, and permits any patentability issue on one or more claims to be raised.  The patentability issue can be based on any evidence.  This means that unless the USPTO activity of a person or entity is being actively monitored, post-grant review is unlikely.

How effective these reexamination and review options will be in helping counter lawsuits is uncertain.  If successful, a patent would be invalidated and a patent infringement case could not go forward based on the invalidated patent.  For example, it will likely cost a small company at minimum of $10,000 to request an USPTO ex parte review of a relatively short patent with four independent claims.  Assuming the review occurs within twelve to eighteen months of the request as the program is designed, the cost might be minimal compared to that of litigation.

7. Defensive Patenting and Acquisitions

Over the last decade, some observers of the OSS market wondered whether the OSS community members might be forced into holding patents defensively, as distasteful as it might be to them.[247]  Defensive patenting seeks patents to determine offensive lawsuits, not for licensing or exclusion purposes.  They are only asserted in response to litigation threats.  Defensive patenting does not work with patent trolls, however, because trolls do not practice patented technology so they cannot be sued.

Some OSS companies create a patent policy that acknowledges the status of patents in the industry, and then implement measures to incorporate patents into business strategy while explaining its position on software patents to the OSS community.[248]  For example, Red Hat says it reluctantly defends itself against patent litigation with a corresponding defensive portfolio of software patents.[249]

V.   Conclusion

From the perspective of the members in the OSS community, their open and productive society is being impacted by the recent patent battles of titan software- and Internet-enabled companies such as Oracle v. Google.  Now small OSS developers are getting hit in the patent crossfire.  Additionally, patent trolls are lobbing threats of lawsuits at OSS from the shadows of their shell companies, protected from countersuits by their nonpracticing status and friendly jurisdictional territory, as in the Lobsys cases.

Thus, despite the OSS community’s general aversion to software patents, the high-money patent litigation has entered the OSS arena.  Bilski v. Kappos (2010) and the recent legislative reforms with AIA reinforce the idea that software patents are not going away, much to the OSS community’s chagrin.  Thus, for the foreseeable future, the community will need to continue maneuvering defensively against assertions of what may be invalid patents.

Gone are the days when most OSS disputes concerned license compliance.  Disputes were usually resolved through peer pressure rather than through legal channels.  Even when Software Freedom Law Center filed its first lawsuits in 2007, parties generally settled quickly with defendants complying with license terms.  Cases such as Jacobsen v. Katzer established the enforceability of OSS licenses under copyright law, which has worked fairly well within the OSS ecosystem, but does nothing to prevent offensive patent challenges from external sources.

The question now for the OSS developers is what practical and legal maneuvers can be used most effectively to protect their freedom to develop software.[250]  Patent peace provisions in OSS licenses and patent pledges by software companies give some protection from internal attack, but provide none where titans or trolls aim at OSS targets from afar.  The cost for a defense in a patent lawsuit can easily reach $3 million, which is enough to wipe out a small OSS developer financially.[251]  Nevertheless, patent trolls “fare extremely poorly in court” with their software patents, even when they litigate them again and again.[252]

In the past, practical and legal actions of OSS participants have provided significant protective action.  Open-source companies such as Red Hat have taken defensive measures by forming patent pools that can be asserted against offensive threats to Linux®-related software.  Open-source advocates, such as those associated with Groklaw.net search for invalidating prior art against patents being asserted in patent-infringement suits.  OSS-related organizations with programs like Patent Defenders are gathering and publishing code and technical disclosures in online prior-art repositories that serve as sources for invalidating prior art.

The OSS community might consider two additional defensive shields.  The first is OSS patent owners granting one another defensive patent licenses (DPLS) through its distributed network.  The second is requesting a relatively low-cost USPTO patent review or re-examination, which might lead to the invalidation of the patent being litigated.  Open-source organizations or businesses could provide some financial or legal support to OSS-related parties submitting USPTO ex parte application requests.

Despite all the practical and legal defensive shields or maneuvers available, the OSS community will need to remain vigilant.  The exuberance of patent litigation in recent years has the potential for great harm.[253]  Thus, the OSS community best band together and be fully armed, ready to dodge a barrage of patent arrows, and perhaps shoot a few back from its own quiver when necessary.


* J.D., University of California, Hastings College of the Law, 2012; Ph.D., University of Minnesota.  The author thanks David W. Burns, Ph.D., and the editors of the Hastings Science and Technology Law Journal for their help.

