ParentFull thread_urga·The malicious actor would simply edit the install script to comment out the checksum verification step, since they already own the script.View on HN