• Ⓜ3️⃣3️⃣ 🌌@lemmy.zip
    link
    fedilink
    arrow-up
    17
    ·
    14 hours ago

    Notepad++ have been there too

    Then you realize very popular software and their official website actually are a one man show. Nobody is perfect and those things tend to work for years without security in mind. At the time it were built, supply chain attack was not invented yet.

    • dogs0n@sh.itjust.works
      link
      fedilink
      arrow-up
      1
      ·
      9 minutes ago

      At the time it were built, supply chain attack was not invented yet.

      I don’t have evidence, but I’m still gonna press X to doubt this claim.

  • theunknownmuncher@lemmy.world
    link
    fedilink
    arrow-up
    13
    arrow-down
    20
    ·
    edit-2
    9 hours ago

    Linux package repositories win again. Downloading random executable files from sketchy websites will always be stupid

    EDIT: laughing so hard at the cope from windows users 😂 stay fully in denial and enjoy your self-installed viruses

      • theunknownmuncher@lemmy.world
        link
        fedilink
        arrow-up
        3
        arrow-down
        18
        ·
        edit-2
        16 hours ago

        Nah. Nothing is perfect of course, but normalizing executing software sourced from random, untrustworthy websites will always be objectively worse than curated repos.

        • Cypher@aussie.zone
          link
          fedilink
          arrow-up
          17
          arrow-down
          1
          ·
          edit-2
          15 hours ago

          It is hardly a random untrustworthy site, it is the software publishers site. There is no reason that a package repo can’t suffer a similar attack.

          Your confidence is entirely misplaced.

          • theunknownmuncher@lemmy.world
            link
            fedilink
            arrow-up
            1
            arrow-down
            19
            ·
            edit-2
            15 hours ago

            Oh I guess I should totally put my confidence in random sketchy websites. Great point!

            It literally doesn’t matter if it’s a publisher site or not, users can’t tell the difference and it normalizes clicking links from a web search and running whatever software download the user sees first.

            • Cypher@aussie.zone
              link
              fedilink
              arrow-up
              9
              ·
              15 hours ago

              Go on then, explain to me how the well known software publishers website is random and sketchy.

              • theunknownmuncher@lemmy.world
                link
                fedilink
                arrow-up
                1
                arrow-down
                19
                ·
                edit-2
                15 hours ago

                I feel like you’ve demonstrated very effectively how users lack the skills to understand what they are reading online 😂

                • Cypher@aussie.zone
                  link
                  fedilink
                  arrow-up
                  13
                  arrow-down
                  1
                  ·
                  15 hours ago

                  It isn’t a random, sketchy or inherently untrustworthy site.

                  You shouldn’t have any issue explaining how you would go about verifying that a software repo is trustworthy and how that differs from verifying a website.

                  Unless you don’t actually know what you’re talking about…