Desktop Linux is a security nightmare - /g/ (#105963891) [Archived: 200 hours ago]

Anonymous
7/20/2025, 6:22:49 AM No.105963891
1752397048
1752397048
md5: e59955941322f53adbeb63b2c7df81a8๐Ÿ”
Most home users who switch to Linux are just tech-illiterate "muh privacy" meme followers. And the remaining are hippie weirdos who are hostile toward even critical security features like Secure Boot; a feature that protects you against permanent malware/bootkit/rootkit. Linux (X Windows System) doesn't even have input isolation; any app can read any input sent to another app. MacOS for example has "Input Monitoring" feature that protects your keyboard against any unfocused app. And I'm not even talking about those trashy "muh stable" distros that force you to use apps last updated 30 months ago. It's not 2003 anymore, stability means nothing for home users, having most up-to-date software installed is the important thing. And when you truly pressure these people about security issues they first try to cope like this: "Linux user base is too small, nobody would manufacture malware for Linux machines anyway :)"; then if you continue they turn hostile like a hoarder cat lady who defends her trash filled house.
Replies: >>105963958 >>105963967 >>105964349 >>105964357 >>105964545 >>105964669 >>105964703 >>105965520 >>105965895 >>105965936 >>105966275 >>105967395 >>105968101
Anonymous
7/20/2025, 6:24:22 AM No.105963902
ok madaidan
Anonymous
7/20/2025, 6:29:58 AM No.105963948
didnt ask + didnt read + you're a frogposter + ratio
Anonymous
7/20/2025, 6:31:13 AM No.105963958
1750827114915243_thumb.jpg
1750827114915243_thumb.jpg
md5: 9e816ef22080e5d3cc8b9467ef4e4049๐Ÿ”
>>105963891 (OP)
is this real
Anonymous
7/20/2025, 6:32:16 AM No.105963967
>>105963891 (OP)
Enabling secure boot on Linux is easy. sbctl basically automates the entire process. Anti systemd niggers are just schizophrenic retards
Replies: >>105964001
Anonymous
7/20/2025, 6:35:22 AM No.105964001
>>105963967
The fact that distros don't do this for you automatically on installation is an indictment on them, and the fact that motherboard vendors refuse to act as roots of trust is an indictment on them. Microsoft did nothing wrong.
Replies: >>105964044 >>105964474
Anonymous
7/20/2025, 6:41:16 AM No.105964043
gonna have to go with `mitigations=off`, anon
Anonymous
7/20/2025, 6:41:17 AM No.105964044
>>105964001
That would be awful though. If you aren't using your own keys for secure boot you're just playing pretend that you have secure boot. Microsoft's PKs have been compromised numerous times.
Replies: >>105964241 >>105966769
Anonymous
7/20/2025, 7:06:26 AM No.105964188
Secure Boot didnโ€™t stop BlackLotus.

As long as youโ€™re not some ADHD updooter on arch youโ€™re not going to have security issues supply-chain wise.

Linux is very secure, it just requires someone skilled enough to harden it. Also it does have secure input, AppArmor and usbguard will protect you from 99.999% of attacks. If youโ€™re really fucking paranoid just turn on SELinux and build out your contexts.

The idea that the most secure OS in existence somehow magically becomes less secure when used as a desktop OS is just silly. All OSes need hardening for the best security and Linux is no exception, but itโ€™s also the most secure by default.
Replies: >>105964211
Anonymous
7/20/2025, 7:11:37 AM No.105964211
Wow this thread is a great example of how everyone on modern /g/ is a huge fucking retard. Including me since I keep coming back here for some reason expecting something different.

Let's be real for a moment: Every one of you are fucking stupid and have no idea what you're doing. If you did you wouldn't be here promoting use of things like:
>Microsoft rootkit LARPing as improved BIOS
>NSA+Linux LARPing as improved security for the kernel
>systemback(d)oor

>>105964188
>most secure OS
lmao.
Replies: >>105964291 >>105964584
Anonymous
7/20/2025, 7:16:58 AM No.105964241
>>105964044
>Microsoft's PKs have been compromised numerous times.
lol no the fuck they haven't fuck off
Replies: >>105964474
Anonymous
7/20/2025, 7:29:08 AM No.105964291
>>105964211
Retard
Replies: >>105964363
Anonymous
7/20/2025, 7:51:50 AM No.105964349
1740748836895106
1740748836895106
md5: 1975f6598ff48906f34808b3f3a60cbd๐Ÿ”
>>105963891 (OP)
mac chads just cant stop winning
Anonymous
7/20/2025, 7:53:33 AM No.105964357
>>105963891 (OP)
>Linux (X Windows System) doesn't even have input isolation; any app can read any input sent to another app. MacOS for example has "Input Monitoring" feature that protects your keyboard against any unfocused app.
do linjeets really?
Anonymous
7/20/2025, 7:54:29 AM No.105964363
>>105964291
No argument? No problem. Just attack the messenger.

I'm sure you're cybersecurity expert anon. I mean you've parroted every meme those know nothings parrot at their meetings and presentations. It isn't like Linux is the least secure UNIX-clone and the NSA doesn't have their people so deeply embedded into the "community" that we've banned everyone from Russia from contributing or anything.
Replies: >>105964702
Anonymous
7/20/2025, 8:20:42 AM No.105964474
>>105964001
>The fact that distros don't do this for you automatically on installation is an indictment on them
Ubuntu and I think Fedora do, not sure about others. I know Arch doesn't.

>>105964241
Probably referring to https://arstechnica.com/security/2024/07/secure-boot-is-completely-compromised-on-200-models-from-5-big-device-makers/

Don't think that's related to microsoft though
Replies: >>105964597
Anonymous
7/20/2025, 8:35:29 AM No.105964545
>>105963891 (OP)
>b8/8
if some shady person has access to your piece of hardware, then you're already fucked
>secure boot
uefi is shit, you can mimic some of secure boot features in bios
>muh X11 input isolation
everyone in the linux community already know this, that's why wayland exists
if you run a malicious program, it will always be harmful in whatever OS that you use
Anonymous
7/20/2025, 8:37:07 AM No.105964550
>implying I use linux for security
I use it because I fucking hate Windows
Replies: >>105964597
Anonymous
7/20/2025, 8:43:58 AM No.105964584
>>105964211
yeah, OP is a shill
all antilinux threads are paid shills
Anonymous
7/20/2025, 8:46:27 AM No.105964597
>>105964474
Ubuntu and Fedora don't generate new chains of trust, they are just signed with Microsoft's key.
>>105964550
trvke
Anonymous
7/20/2025, 9:00:09 AM No.105964669
>>105963891 (OP)
>like Secure Boot; a feature that protects you against permanent malware/bootkit/rootkit
many people use it
and it doesn't actually protect you much
>any app can read any input sent to another app
Wayland guys are doing something like that but I don't care because I use only free software that was compiled on my machine. Why do you use software that is spying on you? Also when you use such software, are your files also protected like input? What about names of processes that run on your system? Or other similar things? On Linux we have namespaces for that. I never saw windows or mac user run software from other user (the oldest way to protect your files), once I tried it on mac and had to tinker with homebrew for the whole day to do it. I sweared to never touch mac after that.
>having most up-to-date software installed is the important thing
it gives you security bugs not yet found by beta testers
Replies: >>105964716
Anonymous
7/20/2025, 9:05:32 AM No.105964702
>>105964363
Linus is from Finland, they had a war with russia, I don't think NSA is related in this case
Anonymous
7/20/2025, 9:05:34 AM No.105964703
1722270010429939
1722270010429939
md5: e1097f83b14516210572b42ac611da14๐Ÿ”
>>105963891 (OP)
macOS won
troonix lost
Replies: >>105965353
Anonymous
7/20/2025, 9:06:29 AM No.105964716
>>105964669
You are aware you are running non-free software by visiting this website right?
Replies: >>105964742
Anonymous
7/20/2025, 9:11:34 AM No.105964742
>>105964716
I trust browser not to send my input to all tabs when window is not focused
Anonymous
7/20/2025, 11:02:38 AM No.105965353
>>105964703
based
Anonymous
7/20/2025, 11:34:51 AM No.105965520
36432532432
36432532432
md5: 9b27711af239d96eae474239880396a7๐Ÿ”
>>105963891 (OP)
Replies: >>105965865
Anonymous
7/20/2025, 12:37:18 PM No.105965865
>>105965520
iChads stay winning
lincels stay seething
Anonymous
7/20/2025, 12:41:52 PM No.105965895
>>105963891 (OP)
SAAR WAY ARE YOU AFRAAIT
Anonymous
7/20/2025, 12:46:44 PM No.105965936
>>105963891 (OP)
>skill issue
Seems like a (You) problem
Anonymous
7/20/2025, 1:30:10 PM No.105966275
>>105963891 (OP)
Apple won.
Anonymous
7/20/2025, 2:31:32 PM No.105966769
>>105964044
Anon, if you set up your own signing on secure boot, you're supposed to wipe everything on the TPM, enroll your own PK and KSK and put the NT kernel hash in the db if you really need it, not trust Microsoft's PK
Anonymous
7/20/2025, 3:52:46 PM No.105967395
1734074700230708
1734074700230708
md5: 20b24e8fa3df850bc693f7d092226c7e๐Ÿ”
>>105963891 (OP)
Apple won.
Anonymous
7/20/2025, 5:15:54 PM No.105968101
>>105963891 (OP)
>(X Windows System) doesn't even have input isolation; any app can read any input sent to another app.
Wayland is around...