...wow turns out the "not safe" vibes I was getting from Pling/KDE Store were right, there's malware on there masquerading as themes cause nobody is checking them

Someone uploaded a "theme" that rm rf's every drive mounted with user permissions 💀

reddit.com/r/kde/comments/1bix

Follow

@hazelnot Why on earth are theme packages allowed to execute arbitrary code to begin with?

· · Web · 1 · 0 · 1

@joepie91 Apparently to allow them to copy themselves to the proper directories, cause there's no system to do that automatically

@hazelnot This seems like the worst possible way to address that

Sign in to participate in the conversation
Pixietown

Small server part of the pixie.town infrastructure. Registration is closed.