|
|
|
|
|
by mDyJzDPmBdG
10 days ago
|
|
Let's be real, in most cases it is: curl -s script.random-guy.net | sh
It is such glaring security hole that there was an old submission about filling such install script with `sleep` commands and detecting it on server side, to send different versions for downloading (and reviewing) and for actual direct execution. |
|