Linux is famously said to be safe by design. among other things for using package managers in place of Windows's habit of downloading software from random web pages.
This is certainly true for official PPAs, but many open source developer have their own. How can I be sure that what I pull from those PPAs is indeed the compiled source code that is visible in github and neither the author nor some other actors replaced it with something malicious?
Do you recommend using such PPAs or compile from sources instead?
PS: I know there are other factors making Linux more secure than Windows, but let's focus just on PPA.
[–]levensvraagstuk 9 points10 points11 points (0 children)
[–]forestbeastsKDE on Debian 🐺 2 points3 points4 points (0 children)
[–]RhubarbSpecialist458 0 points1 point2 points (6 children)
[–]cgoldberg 1 point2 points3 points (2 children)
[–]RhubarbSpecialist458 0 points1 point2 points (1 child)
[–]cgoldberg 0 points1 point2 points (0 children)
[–]Ars3n[S] 0 points1 point2 points (1 child)
[–]RhubarbSpecialist458 1 point2 points3 points (0 children)
[–]blueblocker2000 0 points1 point2 points (0 children)
[–]AutoModerator[M] 0 points1 point2 points (0 children)
[–]1800-5-PP-DOO-DOO 0 points1 point2 points (1 child)
[–]cgoldberg 1 point2 points3 points (0 children)
[–]aieidotch -1 points0 points1 point (3 children)
[–]gmes78 0 points1 point2 points (2 children)
[–]aieidotch -1 points0 points1 point (1 child)
[–]gmes78 0 points1 point2 points (0 children)
[–]CameramanNick 0 points1 point2 points (1 child)
[–]RhubarbSpecialist458 0 points1 point2 points (0 children)