Search
Items tagged with: AUR
Arch Linux maintainers removed malicious commits and banned accounts after malware hit the AUR, with more than 400 compromised packages initially identified. 🛡️
Arch later said all known malicious commits were scrubbed; over 1,500 AUR packages were affected, underscoring the need to verify community-submitted code. 🔍
🔗 fossforce.com/2026/06/arch-say…
#TechNews #ArchLinux #AUR #Arch #Linux #OpenSource #FOSS #Cybersecurity #Malware #Transparency #Security #Privacy #Software #GNU #Tech
Arch Says 'All's Clear' After AUR Malware Incident Affects 1,500 Packages - FOSS Force
Arch says it's scrubbed all known malicious commits, but the 1,500‑plus affected AUR packages are a fresh reminder to "trust but verify."Christine Hall (FOSS Force)
Arch Linux AUR Hit By Another Wave Of Now More Sophisticated Malware Attack phoronix.com/news/Arch-Linux-A…
#archlinux #aur #cybersecurity #opensource
Arch Linux AUR Hit By Another Wave Of Now More Sophisticated Malware Attack
Just a day after Arch Linux developers believed they got their malware AUR incident under control with 1,500+ packages affected by malware, another round of of AUR malware is now being discoveredwww.phoronix.com
Jesus Christ, at this point I think more drastic measures should be taken to lock the AUR down, not this game of whack-a-mole of trying to revert changes to individual packages
Have some sort of trust system, guardrails, mandatory waiting times or account age before becoming maintainer
ANYTHING
phoronix.com/news/Arch-Linux-A…
Arch Linux AUR Hit By Another Wave Of Now More Sophisticated Malware Attack
Just a day after Arch Linux developers believed they got their malware AUR incident under control with 1,500+ packages affected by malware, another round of of AUR malware is now being discoveredwww.phoronix.com
Preliminary analysis of AUR malware
Malware Analysis Report: deps Report date: 2026-06-11 VT Link Triage Link Note: The following report was very hastily written by Codex.Whanos (ioctl.fail)
Many AUR packages have been compromised - forum.tromjaro.com/t/many-aur-…
We explain how to check if you were infected.
#aur #aurexploit #linux #xfce #tromjaro #manjaro #foss #opensource #atomicarch
Many AUR packages have been compromised
You can read the entire thing here - Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit But basically it seems that hundreds of AUR packages that were not maintained in a while got “updated” with a malicious code.TROMjaro Forum
