Karna ( KarnaSubarna@lemmy.ml ) to Linux@lemmy.ml · 2 months agoArch Linux AUR Under Another Wave Of Malicious Packages, Package Adoptions Haltedwww.phoronix.comexternal-linkmessage-square43linkfedilinkarrow-up1125cross-posted to: archlinux@discuss.tchncs.de
arrow-up1125external-linkArch Linux AUR Under Another Wave Of Malicious Packages, Package Adoptions Haltedwww.phoronix.comKarna ( KarnaSubarna@lemmy.ml ) to Linux@lemmy.ml · 2 months agomessage-square43linkfedilinkcross-posted to: archlinux@discuss.tchncs.de
minus-squareShinkanTrain ( ShinkanTrain@lemmy.ml ) linkfedilinkEnglisharrow-up9·2 months agoNo way to prevent this, says only repo where this regularly happens
minus-squarethingsiplay ( thingsiplay@lemmy.ml ) linkfedilinkarrow-up7·2 months agoBesides all the other non infected ways to install the software, there is a way to prevent this: Just read the AUR package before install and don’t trust blindly any new maintainer.
minus-squareFaux ( Faux@lemmy.ml ) linkfedilinkarrow-up11·2 months agoIt’s metaphysical approach to security. Enshrined rules that can’t be enforced don’t define user’s behavior.
No way to prevent this, says only repo where this regularly happens
Besides all the other non infected ways to install the software, there is a way to prevent this: Just read the AUR package before install and don’t trust blindly any new maintainer.
It’s metaphysical approach to security. Enshrined rules that can’t be enforced don’t define user’s behavior.