3 ms·
> At the end of the day you still need to trust the organization building your OS so they don't push a backdoor in your root installed package. I am curious wh
by sichtlinkair 5y ago
> At the end of the day you still need to trust the organization building your OS so they don't push a backdoor in your root installed package.
I am curious what are good solutions to this problem? Compile your OS (and any other software) from source?
- content_sesh 5y agoSomewhere a Gentoo maintainer's ears are ringing, but they don't know why...
- ex_amazon_sde 5y agoA backdoor/bugdoor is much more likely to be in the source code. Compiling the code by yourself does not help. You have to rely on a distribution that has a many-eyes review policy and has security conscious users.