• 0 Posts
  • 11 Comments
Joined 1 year ago
cake
Cake day: May 18th, 2024

help-circle

  • Does this work? I would think scanning a *.package would only assess that content. Wouldn’t something malicious likely be in the code or dependency it could call via some form of get request? That .deb package itself could be completely “safe” until it calls a git clone <URL> to then run something malicious.

    I think this would be more likely to work for appimage or flatpak, though the same approach could compromise the validity of the scan. Am I thinking too hard, or did I just miss the point?






  • In my experience, not much, but I’m a marginally functional newbie. Mint manages things for you fairly nicely and has been the best, it just works with out messing with much/anything. (At least for my hardware)

    I managed to get gnome working smoothly on mint and have been happy with it. I started and returned here since I last ditched windows as a native OS.

    The only thing that has made me consider distro hopping from mint is AUR on arch and gnome, though I’ve been successful so far.

    Part of trying the distros that are more advanced and give you more explicit control and configuration is the sense of accomplishment and it makes you figure out how and why things work the way they do. It holistically builds your velocity in your understanding of Linux. (Or gnu whatever that nuance is).

    If your machine has enough resources it is super easy to host VMs of anything you want to try. You can try them all, and it won’t cost you anything but time!