704
You have no power here
(lemmy.ml)
I use Arch btw
Sister communities:
Community rules
Please report posts and comments that break these rules!
Just use trusted repos ๐
We have GPG for a reason.
There are a lot more ways to sneak malware into a system. Especially if some apps aren't being maintained anymore. Linux is definitely safer, but you shouldn't let your guard down
especially if you're a developer. There are a lot of shenanigans going on with malware npm packages that prey on easy typos. I imagine it's the same with other library installers for other languages too
Funny you bring this up because it's exactly what I was thinking of. A million small packages and dependencies and who knows if the repos got hijacked