Could someone who listened to this podcast enlighten me with brief summary? Mainly, if I only install the open-source vetted software from my package distributor, and don't do silly things like insert untrusted usb devices or run binaries not from my distro's repository, or execute random scrips from the internet, or disable my sudo password, or not keep up-do-date with security patches, and assuming I'm not subject to 0-days, then how does the malware get in?
The only malware I'm aware that I've ever had on linux is from ubuntu installing the amazon search thingie, or from proprietary programs I thought I might try which ended up running stuff I didn't want in the background.