logoalt Hacker News

charcircuityesterday at 4:55 PM5 repliesview on HN

Desktop Linux has always been a house of cards in regards to security. I agree it's amazing that it went on for so long, but this was inevitable.


Replies

Matlyesterday at 5:48 PM

With regards to sandboxing etc. maybe. With regards to packages? Official repos support signing and usually rely on maintainers with proven track records. AUR was a honor system and since some people are total basement losers, you can't rely on that.

show 1 reply
mindlessgyesterday at 5:27 PM

Castles made of sand slips into the sea, eventually

zahlmanyesterday at 5:19 PM

More so than, say, Windows? Really?

And no, "people using one Linux distro can opt in to possibly getting pwned by each other by making use of a third-party software depot" does not reflect upon the entirety of the Linux world.

show 3 replies
GreenVulpineyesterday at 5:56 PM

Better than the commercial alternatives

tempfileyesterday at 5:15 PM

I disagree. Maintainers for the major distributions take their roles very seriously, and do a very good job generally of filtering out malicious packages. The AUR is an outlier, being essentially an unmaintained wild west.

show 1 reply