• jagged_circle@feddit.nl
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    8
    ·
    2 days ago

    Oof, there’s a reason you use an app store. Dont download shit direct from the internet. Thats how you get malware

    • AndrewZabar@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      1
      ·
      1 day ago

      Yes because it’s that simple. Every file online that’s not from some huge corporation is spyware. /s

      Some people are strange - we know what we’re doing, we know a site and whether they have a solid reputation, we have experience and can determine when we’re getting a safe file. Oh, and do you truly believe that the “official” sources don’t dole out spyware left & right? Don’t be this naive; It’s not as simple as you stated. That’s just the general carte blanche rule that experts tell ordinary users because if we didn’t, they would download crap from everywhere under the sun and load up on malware every day.

      • jagged_circle@feddit.nl
        link
        fedilink
        English
        arrow-up
        1
        ·
        19 hours ago

        Obviously you have no idea how bad x.509 is.

        The issue isnt just the developer. Its your connection. Thats why we have release signatures, and most repos on git dont have signed releases.

        • AndrewZabar@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 hour ago

          Well I was not really addressing the specific item that spawned this discussion thread, only the notion that was stated that one should only ever use the official stores.

    • IngeniousRocks (They/She) @lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      5
      ·
      2 days ago

      Buddy, pal, my absolute friend.

      It’s not like I’m not vetting the source code. Are you out here installing from sources that don’t let you vett your source code?

      Enjoy your spyware I guess 🙄

      • jagged_circle@feddit.nl
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        1
        ·
        2 days ago

        I do verify signatures, yes. If it isnt singed, I don’t install it.

        Thats why you use fdroid.