• CaptDust@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    1
    ·
    2 days ago

    Well, those are mostly extension libraries, stuff “normally” installed using pip. Arch is kind of unique that they encourage using system aur over pip, npm and other package managers. While it is a big radius, none of the python packages stick out to me, but maybe I just haven’t encountered the popular ones.

    • iocase@lemmy.zip
      link
      fedilink
      English
      arrow-up
      5
      ·
      2 days ago

      The attackers specifically targeted orphaned projects on AUR so it’s no wonder most of those aren’t familiar to us.

    • esc@piefed.social
      link
      fedilink
      English
      arrow-up
      3
      ·
      2 days ago

      It isn’t really all that unique? Debian does it, el does it, probably almost any popular distro?