[-] generator@lemmy.zip 2 points 3 hours ago

Yes, im very interested watching digital characters having sex

[-] generator@lemmy.zip 2 points 4 hours ago

They do this for years, i've several games for free from GOG, what's different?

Some of the games didn't even installed, "it's free cool, let me grabbed"

[-] generator@lemmy.zip 9 points 23 hours ago

My ISP doesn't provide IPv6, and with other ISP using CGNAT instead don't think that IPv6 will be the main standard any time soon.
It's more of "if it works, don't fix it", just apply workarounds like tunnels

[-] generator@lemmy.zip 21 points 23 hours ago
[-] generator@lemmy.zip 2 points 1 day ago* (last edited 1 day ago)

Just the case of the packages being removed only a few hours after been published just makes my point of "trusted users" reviewing and reporting then.

And is not only an archlinux/AUR problem, the same happens with python pip, npm, dockerhub, github... With bigger popularity, bigger the target.

These days after the success of Steamdeck many users switched to Linux, and many of those started using arch or based distros like EndeavourOS because some one on reddit, YouTube or other said is the best for new hardware and you can find everything you need on AUR.
New users won't review scripts or PKGBUILD, that's gibberish, just search and install, and a few hours could be too late for some.

I don't care if Linux loses or gains popularity, but if there's no guard rails of some kind of control things could get worse, and even end AUR as it is now.

Having people control what's published or not, probably not the best solution, but leaving it as a wild west also not

[-] generator@lemmy.zip 6 points 1 day ago* (last edited 1 day ago)

Arch also warns uses about AUR, use at at your own risk, and can break your system.

My approach isn't definitely not the best solution, I was saying this is only the beginning, and with other arch based distros also using AUR only gets worse, if there's any moderation and some kind of package control before publishing then when thins get real bad maybe too late and arch starts loosing users.

Now is just some packages, later could be some popular package take overs or some kinda spoofing of other packages.

I use arch BTW (since 2011), and ~~Debian~~ Armbian on Raspberry Pi, one is rock solid the other sometimes break with updates

[-] generator@lemmy.zip 20 points 2 days ago* (last edited 2 days ago)

That's why you shouldn't blindly trust AUR, and always review the scripts before installing.

But something needs to change:

  • packages need to be reviewed (maybe also updates on new/untrusted users)
  • New package adoption need to be reviewed
  • Trusted users don't need package review
  • Trusted users can review new packages (from other users)

This won't stop here, more malware packages will appear, arch and Linux in general is getting more users and becoming a target, not only ArchLinux AUR but also other distros with custom repositories. Many users install packages from custom repositories blindly, or follow guides without any knowledge what they do.

2025 is the year of malware on Linux

[-] generator@lemmy.zip 4 points 6 days ago

In Portugal it's called Salazar, the same name of the dictator

[-] generator@lemmy.zip 6 points 1 week ago* (last edited 1 week ago)

Johnathan Kent (Clark & Lóis son) is gay and has a boyfriend, he had a comic run as Superman while Clark was off-world, so he was a gay Superman (now is back to Superboy or just Johnathan)

generator

joined 2 weeks ago