6 ms·
That's absurd.
by staticassertion 6mo ago
That's absurd.
- RobotToaster 6mo agoNo more absurd than letting a megacorp control what I install on my own device.
- staticassertion 6mo agoInstead the megacorp forces open source licensing, which doesn't solve any of this shit anyway lol
- array_key_first 6mo agoIt's also true, the best way to audit software is source-code and behavior analysis. Google and Apple do surprisingly minimal amounts of auditing of the software they allow on the Play Store and App Store, mostly because they can't, by design. It should shock absolutely nobody then that those distribution methods are much more at risk of malware.
- staticassertion 6mo agoNo one is auditing. Behavior analysis works on closed source software too.
- array_key_first 6mo agoMost open source repositories do have eyes on the code. Debian often has separate maintainers who maintain patches specific to Debian. It's not a coincidence that Linux distros are much less susceptible to malware in their official repositories. It's a result of the system. Trusted software currated and reviewed by maintainers. The play store will always have significant amounts of malware, so this entire conversation is moot.
- staticassertion 6mo agoA lot of dubious claims here. 1. "Most open source repositories do have eyes on the code" Seems basically impossible that this is true. "Debian often has separate maintainers who maintain patches specific to Debian." does not support the previous statement. Debian cherry picks patches, yes. 2. "It's not a coincidence that Linux distros are much less susceptible to malware in their official repositories." Not only is it not a coincidence, it seems to not even be true. 3. "The play store will always have significant amounts of malware, so this entire conversation is moot." This seems to just be "a problem can not be totally solved, therefor making progress on this problem is pointless to attempt". I... just reject this?
- tosti 6mo agoRefusing or rejecting the claims don't invalidate them.
- staticassertion 6mo agoWhy would I need to invalidate claims made with no support that seem obviously incorrect? Certainly I won't accept them.