| ▲ | uecker 4 days ago | ||||||||||||||||
Downloading a deb via a package manager is more secure. Downloading a deb, comparing the hash (or at least noting down the hash) would also already be more secure. But yes, that the run arbitrary scripts is also a known issue, but this is not the main point as most code you download will be run at some point (and ideally this needs sandboxing of applications to fix). | |||||||||||||||||
| ▲ | IshKebab 4 days ago | parent | next [-] | ||||||||||||||||
> Downloading a deb via a package manager is more secure. Not what I meant. Getting software into 5 different distros and waiting years for it to be available to users is not really viable for most software authors. | |||||||||||||||||
| |||||||||||||||||
| ▲ | 4 days ago | parent | prev [-] | ||||||||||||||||
| [deleted] | |||||||||||||||||