• taladar@sh.itjust.works
    link
    fedilink
    arrow-up
    14
    ·
    7 months ago

    I don’t see how something would be inherently easier to attack if it is called systemd-foo instead of just foo. Attack surface and vectors do not depend on which project develops a particular tool.

    • SqueakyBeaver
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 months ago

      I’d be willing to bet it’s people fearing another xz-like situation