• tired_fedora@lemmy.ml
    link
    fedilink
    arrow-up
    93
    arrow-down
    7
    ·
    edit-2
    5 hours ago

    TLDR: Open package repositories without some approval and oversight system, like AUR, will have even more problems in the future due to advanced coding AI and malicious foreign hackers.

    Edit: Please normalize TLDR’s on bot posts with just a link.

    Edit 2: I have been rightfully informed that this is not a bot post. I still think links should not be posted without a tiny abstract, one might say: a TLDR.

    I have also been informed that the text does not spell out “foreign”. This is correct. The text does say

    Not all of the packaging issues are as bad as the initial wave of trying to steal credentials, some are just adding ridiculous messages in Russian.

    This implies but does not establish the nationality of attackers. While Arch has contributors from all over the world, it is commonly cited as being a Canadian distribution (example, see below). https://distrowatch.com/table-mobile.php?distribution=arch

    • Excel@lemming.megumin.org
      link
      fedilink
      English
      arrow-up
      3
      ·
      7 hours ago

      AUR is still working as intended. It’s basically a public wiki of shell scripts, it was never intended to be secure in the first place. It has always been the user’s responsibility to review everything or avoid using it.

    • m532@lemmy.ml
      link
      fedilink
      arrow-up
      16
      ·
      14 hours ago

      “Foreign hackers”

      Foreign to who?

      The article never said “foreign”, you made that up.

    • ScoffingLizard@lemmy.dbzer0.com
      link
      fedilink
      arrow-up
      14
      ·
      19 hours ago

      I remember the good ole days when nobody cared enough about Linux to spread malware to it. Sigh. All these techbros that need to j their d to their power trips, dystopian surveillance, and shitty AI companies have probably started this. I even noticed a Linux hate sub on Lemmy. Imagine there being enough people forced to use Linux to create a hate community where they favor Microslop. Such strange times we live in.