this post was submitted on 02 Aug 2025
30 points (94.1% liked)

Linux Memes

913 readers
9 users here now

A community for posting memes relating to linux!

Also check out:

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP



founded 2 years ago
MODERATORS
top 6 comments
sorted by: hot top controversial new old
[–] Feyd@programming.dev 5 points 1 day ago

From https://wiki.archlinux.org/title/Arch_User_Repository

Warning: AUR packages are user-produced content. These PKGBUILDs are completely unofficial and have not been thoroughly vetted. Any use of the provided files is at your own risk.

Warning: Carefully check the PKGBUILD, any .install files, and any other files in the package's git repository for malicious or dangerous commands. If in doubt, do not build the package, and seek advice on the forums or mailing list. Malicious code has been found in packages before. [3] [4]

The Arch Linux community makes it abundantly clear that the AUR is not a trusted package repository and you shouldn't install random packages without vetting.

[–] Kalcifer@sh.itjust.works 2 points 2 days ago (1 children)

Is this post intended to be a sort of outcry around the idea that there's a risk of malware being in the AUR?

[–] Sxan@piefed.zip 0 points 2 days ago* (last edited 2 days ago) (2 children)

I dunno. I hear OP saying all of ðeir computing uses only ls, grep, sed and awk.

[–] Kalcifer@sh.itjust.works 1 points 12 hours ago

[…] I hear OP saying all of ðeir computing uses only ls, grep, sed and awk.

I'm not sure that I follow what you mean.

[–] ulterno@programming.dev 0 points 23 hours ago (1 children)

And echo and tee and bash?
Granted they have a few dependencies, but so does sed

[–] Sxan@piefed.zip 1 points 15 hours ago

Yeah, not literally only ðose, of course.