• Ⓜ3️⃣3️⃣ 🌌@lemmy.zip
    link
    fedilink
    arrow-up
    22
    ·
    3 days ago

    Notepad++ have been there too

    Then you realize very popular software and their official website actually are a one man show. Nobody is perfect and those things tend to work for years without security in mind. At the time it were built, supply chain attack was not invented yet.

    • dogs0n@sh.itjust.works
      link
      fedilink
      arrow-up
      2
      arrow-down
      2
      ·
      3 days ago

      At the time it were built, supply chain attack was not invented yet.

      I don’t have evidence, but I’m still gonna press X to doubt this claim.

  • theunknownmuncher
    link
    fedilink
    arrow-up
    14
    arrow-down
    28
    ·
    edit-2
    3 days ago

    Linux package repositories win again. Downloading random executable files from sketchy websites will always be stupid

    EDIT: laughing so hard at the cope from windows users 😂 stay fully in denial and enjoy your self-installed viruses

    • slazer2au
      link
      fedilink
      arrow-up
      19
      arrow-down
      1
      ·
      3 days ago

      Tell me you didn’t read the article without saying you didn’t read the article.

      • theunknownmuncher
        link
        fedilink
        arrow-up
        5
        arrow-down
        25
        ·
        3 days ago

        Nah. Nothing is perfect of course, but normalizing executing software sourced from random, untrustworthy websites will always be objectively worse than curated repos.

        • Cypher@aussie.zone
          link
          fedilink
          arrow-up
          22
          arrow-down
          1
          ·
          3 days ago

          It is hardly a random untrustworthy site, it is the software publishers site. There is no reason that a package repo can’t suffer a similar attack.

          Your confidence is entirely misplaced.

          • theunknownmuncher
            link
            fedilink
            arrow-up
            3
            arrow-down
            26
            ·
            3 days ago

            Oh I guess I should totally put my confidence in random sketchy websites. Great point!

            It literally doesn’t matter if it’s a publisher site or not, users can’t tell the difference and it normalizes clicking links from a web search and running whatever software download the user sees first.

            • Cypher@aussie.zone
              link
              fedilink
              arrow-up
              12
              ·
              3 days ago

              Go on then, explain to me how the well known software publishers website is random and sketchy.

              • theunknownmuncher
                link
                fedilink
                arrow-up
                2
                arrow-down
                28
                ·
                3 days ago

                I feel like you’ve demonstrated very effectively how users lack the skills to understand what they are reading online 😂

                • Cypher@aussie.zone
                  link
                  fedilink
                  arrow-up
                  16
                  arrow-down
                  1
                  ·
                  3 days ago

                  It isn’t a random, sketchy or inherently untrustworthy site.

                  You shouldn’t have any issue explaining how you would go about verifying that a software repo is trustworthy and how that differs from verifying a website.

                  Unless you don’t actually know what you’re talking about…