There are oodles of neat and singular programs on github and similar. Curious what steps people take to vet for malware before downloading and trying stuff, especially if you’re not very familiar with the coding language it’s written in.

  • BCsven@lemmy.ca
    link
    fedilink
    arrow-up
    5
    ·
    12 hours ago

    In theory yes. But as an insider to a company that sells proprietary software…also no. LOL.

    They build a lot of their stuff on top of opensource code. There has been the exact same exploits as open source projects, and even a few malware intrusions from either some devs deliberate sabotage or infected machine. Not every giant corporation is checking in depth like you assume they should be, they go on trust to save shareholder profits and if they do an external audit and its a zero day nobody* is catching it.

    *there was that one a while back in an unrelated project where the only reason it was caught was a dev nerd noticed the very slight delay in network response compared to previous version. So caught by human feels wrong and not a diff of git