Shelly 2.4 GUI Package Manager for Arch Linux Released with New Features and Improvements https://9to5linux.com/shelly-2-4-gui-package-manager-for-arch-linux-released-with-new-features
Shelly 2.4 GUI Package Manager for Arch Linux Released with New Features and Improvements https://9to5linux.com/shelly-2-4-gui-package-manager-for-arch-linux-released-with-new-features
In the past I had hard times to convince people that the only sane way to use the AUR repository is to manually vet every build script and source. For years people discarded any form of such advice and blindly installed AUR packages left and right. I guess those times are finally over?!
Still I'm somewhat baffled how many, otherwise security aware, people are shocked about the current AUR malware debacle.
What really surprised me is that it took so long for someone or some group to do it.
So I'm asking myself: But what if it hasn't?
What if someone was more cautious, pulled something more sophisticated, only to compromise a "real" package maintainer and had pivoted from there?
One questions how carefully are maintainers using the AUR?!
Με ένα “fwupdmgr update” στο Thinkpad T14 Gen2 AMD ανανεώθηκε το certificate αν και έχω disable το Secure Boot στο bios
Devices that have been updated successfully:
• UEFI CA (2011 → 2023)
• UEFI dbx (20241101 → 20250902)
Irgendwie spinnt mein Linux!
Die Archlinux Installation ist inzwischen 8 Jahre alt, ohne größere Probleme, aber ich befürchte das seine Zeit nun doch gekommen ist!
Nun, ich denke ich werde mir dann mal wieder Gentoo anschauen! Das hab ich ja ewig nicht mehr genutzt
@Steve12L I use Garuda Linux almost exclusively on my computers. I run the "Mokka" KDE Plasma variant. It's a nice tone-down from "Dr4gonized," but it still has plenty of character.
It has been VERY stable and runs on my VERY old 2nd-gen ThinkPad, my Intel MacBooks & iMac, and my daily driver 10th-gen HP.
#GarudaLinux is the distro that restored my faith in #ArchLinux after the Manjaro debacle a few years ago.
⋅ I tested 9 Arch-based Linux distros, here's how I rank them
− https://www.howtogeek.com/i-tested-nine-arch-linux-distros-heres-how-i-rank-them/
Weekly #19 en ligne.
Au programme :
- Synology DSM 7.4 : déduplication HDD, agent IA, recherche sémantique
- AUR d’Arch sous pression avec une vague de paquets malveillants
- Fedora et le risque des agents IA branchés sur des outils critiques
- Immich v3 RC, Linux 7.1, Lore VCS, KDE Plasma 6.7, Oracle free tier réduit
https://cryptolab.re/posts/2026/weekly-19/
#SelfHosting #Linux #CyberSecurity #OpenSource #DevOps #Synology #ArchLinux #Fedora #Immich
Synology DSM 7.4 apporte la déduplication HDD, un agent IA et une recherche sémantique. L'AUR subit une vague de paquets malveillants. Fedora illustre les risques d'un agent IA branché sur un bug tracker. Linux 7.1, Immich v3 RC, Oracle free tier réduit.
Debian is Stable

Recent waves of corrupted packages on the AUR? A blessing in disguise: it forces us to read PKGBUILDs and remember the dangers of tools like yay.
My golden rule? I never used yay but Install & update AUR packages manually (and check the PKGBUILD! 😅). No blind automation (just my hand made bash scripts).
You know exactly what you install and when.
AUR updates stay separate from official repo upgrades.
Transparency over convenience. #ArchLinux #AUR #Security #SysAdmin #OpenSource