TL;DR there was a backdoor found in the XZ program. All major distros have been updated but it is recommended that you do a fresh install on systems that are exposed to the internet and that had the bad version of the program. Only upstream distros were affected.
Don’t tell me how to live my life, Ars Technica.
I am not deep enough in it, but from the arch-announce mailinglist:
$(command -v sshd)
https://www.openwall.com/lists/oss-security/2024/03/29/4
You should not run Arch in production. Boom, I said it
Well I don’t see any cops.
Hmmm. Are you white?
This is what I look like:
Made out of Empty cups
Ars Technica sounds like a weirdo to me these days. Loves to attack big techs (although understandable), now adds this to their description of Arch.