this post was submitted on 09 Oct 2026
706 points (98.9% liked)

linuxmemes

33047 readers
416 users here now

Hint: :q!


Sister communities:


Community rules (click to expand)

1. Follow the site-wide rules

2. Be civil
  • Understand the difference between a joke and an insult.
  • Do not harrass or attack users for any reason. This includes using blanket terms, like "every user of thing".
  • Don't get baited into back-and-forth insults. We are not animals.
  • Leave remarks of "peasantry" to the PCMR community. If you dislike an OS/service/application, attack the thing you dislike, not the individuals who use it. Some people may not have a choice.
  • Bigotry of any kind will not be tolerated. This is an LGBTQ+-friendly community -- if that is a problem for you, you should leave.
  • 3. Post Linux-related content
  • Including Unix and BSD.
  • Non-Linux content is acceptable as long as it makes a reference to Linux. For example, the poorly made mockery of sudo in Windows.
  • No porn, no politics, no trolling or ragebaiting.
  • Don't come looking for advice, this is not the right community.
  • 4. No recent reposts
  • Everybody uses Arch btw, can't quit Vim, <loves / tolerates / hates> systemd, and wants to interject for a moment. You can stop now.
  • 5. πŸ‡¬πŸ‡§ Language/язык/Sprache
  • This is primarily an English-speaking community. πŸ‡¬πŸ‡§πŸ‡¦πŸ‡ΊπŸ‡ΊπŸ‡Έ
  • Comments written in other languages are allowed.
  • The substance of a post should be comprehensible for people who only speak English.
  • Titles and post bodies written in other languages will be allowed, but only as long as the above rule is observed.
  • 6. (NEW!) Regarding public figuresWe all have our opinions, and certain public figures can be divisive. Keep in mind that this is a community for memes and light-hearted fun, not for airing grievances or leveling accusations.
  • Keep discussions polite and free of disparagement.
  • We are never in possession of all of the facts. Defamatory comments will not be tolerated.
  • Discussions that get too heated will be locked and offending comments removed.
  • Β 

    Please report posts and comments that break these rules!


    Important: never execute code or follow advice that you don't understand or can't verify, especially here. The word of the day is credibility. This is a meme community -- even the most helpful comments might just be shitposts that can damage your system. Be aware, be smart, don't remove France.

    founded 3 years ago
    MODERATORS
    top 50 comments
    sorted by: hot top controversial new old
    [–] spacegoat@lemmy.world 37 points 1 day ago (3 children)

    Thank you Lemmy devs for just allowing to download videos and images. Fuck reddit

    [–] SilverJeyJey@lemmy.world 12 points 16 hours ago (1 children)
    [–] mirshafie@europe.pub 4 points 13 hours ago

    Reddit is trash

    [–] Xenny@lemmy.world 4 points 15 hours ago

    ...I left reddit a while ago...they paywalled downloading shit?

    [–] pineapplelover@lemmy.dbzer0.com 1 points 1 day ago (1 children)
    [–] Magnum@infosec.pub 3 points 15 hours ago (1 children)

    Well the account itself is over 3 years old? Are you a new user?

    Oh I think we migrated around similar times then (I'm a lemm.ee refugee). I thought you were surprised that photos and videos were available to download when this wasn't a recent lemmy change

    [–] thorhop@sopuli.xyz 133 points 1 day ago (4 children)

    Here's a careful reminder that Linux viruses can come in Windows executables.

    When it comes to hacking in the modern day it's all about escaping the box - whether that box is a container, a VM, a sandbox or indeed even an emulated environment. So we should still fear the binary blob.

    Remember: update early, update often - no matter how painful that sounds.

    [–] Cosmonaut_Collin@lemmy.world 2 points 13 hours ago (1 children)

    We need to get proton for templeos so we can be safe.

    [–] bhamlin@lemmy.world 1 points 3 hours ago

    Well, I don't t want to be the one doing the porting to holyc

    [–] Maestro@fedia.io 75 points 1 day ago (11 children)

    Remember: update early, update often - no matter how painful that sounds.

    Not anymore! Supply chain attacks have become so common that it's prudent to wait at least 7 days before updating to prevent installing malware from compromised update infrastructure.

    [–] nroth@lemmy.world 13 points 1 day ago (3 children)

    So, what's the solution? Debian Stable?

    [–] Natanael@infosec.pub 1 points 11 hours ago

    Hardened systems with hardware enforced isolation (virtualization and stuff)

    [–] dgdft@lemmy.world 16 points 1 day ago* (last edited 1 day ago) (2 children)

    Debian + unattended upgrades + modern package managers for non-system-installed software covers your bases very well.

    Debian packages are downstream enough from their sources that the packaging delay keeps you safe (and means the updates have had human eyes on them before they hit you). Unattended upgrades means you don’t have to worry about running the upgrades yourself.

    Pip, npm, and the other big package managers now also support dependency cooldowns on their recent releases, but uv and pnpm pioneered that and cover you for older release environments.

    [–] blibla@slrpnk.net 6 points 1 day ago

    uv is owned by openai fun fact

    Also I would heavily advocate for Debian Testing if you need a rolling release distro. It is less vetted than stable but is still more vetted than many other rolling release options and you can just stay on testing as versions change while getting features pretty fast compared to stable.

    load more comments (1 replies)
    [–] nroth@lemmy.world 8 points 1 day ago

    I really like Arch because I have a very custom setup and like to try the newest things, but this really worries me as Arch-based user-friendly distros that use the same packages make the repos a bigger target.

    [–] signalsayge@infosec.pub 4 points 1 day ago

    On the other hand, AI has made the patch to exploit code as short as 45 minutes.

    load more comments (8 replies)
    [–] motruck@lemmy.zip 19 points 1 day ago (1 children)

    Compatibility layer. Wine Is Not an Emulator.

    [–] Allero@lemmy.today 11 points 1 day ago* (last edited 1 day ago)

    Which is what makes the situation much worse

    [–] capital5@discuss.tchncs.de 14 points 1 day ago* (last edited 1 day ago) (1 children)

    I read a hilarious article, probably 2 decades ago by now, where a guy decided to try running Windows viruses on Linux in Wine.

    If this really is a threat today, I would say that Wine has become a pretty damn impressive project. Here's the link in case anyone else wants to read it: https://entertainment.slashdot.org/story/05/01/26/219201/running-windows-viruses-under-linux

    load more comments (1 replies)
    [–] TropicalDingdong@lemmy.world 216 points 2 days ago (1 children)
    [–] CaptainBasculin@lemmy.dbzer0.com 211 points 2 days ago (3 children)

    Meanwhile innocent looking Z:/ drive

    [–] zurohki@aussie.zone 137 points 2 days ago (4 children)

    Yeah, Wine is not a secure container. Don't count on it for security.

    load more comments (4 replies)
    [–] SkaveRat@discuss.tchncs.de 14 points 1 day ago

    runs wine as root yolo

    [–] Artemis_Mystique@lemmy.ml 11 points 1 day ago

    unless you have it sandboxed in a flatpack container

    [–] Axolotl_cpp@lemmy.dbzer0.com 37 points 1 day ago (4 children)

    "Okay i'il look in to other drives"

    Wine is a flatpak

    [–] KernelTale@programming.dev 16 points 1 day ago (1 children)

    yea, I play pirated games via flatpak bottles in hopes that getting out of the sandbox would be far too much work for the possible gains.

    load more comments (1 replies)
    load more comments (3 replies)
    [–] MangoPenguin@piefed.social 21 points 1 day ago (2 children)

    Isn't your user data available in Wine on Z:\ though? I laughed at the meme but I'd still be worried info stealer malware or similar would have no problem grabbing the data it's looking for as Wine does no sandboxing at all.

    [–] WhyJiffie@sh.itjust.works 7 points 1 day ago (1 children)

    you can remove the Z drive letter, but that's not enough. Nothing prevents a windows program from attempting to call linux syscalls

    Yeah, I'm sure some malware would fail on wine but some could still be just as bad compared to running windows natively.

    load more comments (1 replies)
    [–] RustyNova@lemmy.world 34 points 1 day ago* (last edited 1 day ago) (1 children)

    My linus virus trying to fuck up my disk on nixos (coreutils isn't in the path)

    [–] ThunderComplex@lemmy.today 20 points 1 day ago

    I'm sorry Linus Torvalds is personally trying to destroy your PC

    [–] captainlezbian@lemmy.world 8 points 1 day ago (1 children)

    Jokes on them, even when I ran windows my os wasn't on C, I think it was like E

    [–] Damage@slrpnk.net 8 points 1 day ago (1 children)

    Well I'm known to be a certified freak in the hard drive

    [–] ourselves@slrpnk.net 5 points 1 day ago

    This makes me miss r/shittyreactiongifs

    [–] adarza@lemmy.ca 18 points 2 days ago (2 children)

    doesn't every game have its own c_drive?

    [–] Ghoelian@piefed.social 68 points 2 days ago

    Yea im pretty sure thats the point. The virus will get a drive that has nothing but the infected game on it.

    [–] WhyJiffie@sh.itjust.works 5 points 1 day ago

    more correctly every wineprefix. Depending on how you install games, they might not be running in separate wineprefixes, but I believe steam does it that way

    [–] MrSoup@lemmy.zip 5 points 1 day ago

    Proton for some reason insists in mounting root on Z. Plain wine doesn't care. So I had to use firejail.

    load more comments
    view more: next β€Ί