Una vasta campagna malware ha colpito l'AUR di Arch Linux compromettendo centinaia di pacchetti e rubando credenziali.

Arch Linux wehrt sich gegen eine Angriffswelle, die massenweise Paketbeschreibungen im inoffiziellen Arch User Repository mit Malware verseucht hat.

More than 400 packages in the Arch User Repository (AUR) are distributing a Linux rootkit and infostealer malware targeting credentials and access tokens.

Attackers hijacked 400+ Arch Linux AUR packages to run a Rust credential stealer, with optional eBPF rootkit support on root systems.

Dia 11 de junho de 2026 (ontem), um atacante assumiu o controle de mais de 400 pacotes do Arch User...

Arch Linux Supply Chain Malware, repo-slopscore & AI Model Security Concerns ...

Una vasta campagna malware ha colpito l'AUR di Arch Linux compromettendo centinaia di pacchetti e rubando credenziali.

Community repo freezes new accounts after attackers swamp it with poisoned package updates

L'Arch User Repository (AUR) di Arch Linux � finito nel mirino di un attacco su larga scala: un malware nascosto negli script di installazione ha compromesso oltre 1.900 pacchetti…

At least 1,500 malicious packages were published to the Arch User Repository (AUR) as part of the Atomic Arch supply chain attack.

Attackers hijacked over 1,500 packages in Arch Linux's AUR to plant a credential stealer. The official repos are safe, but the trust model took the hit.

For the second time in a week, the AUR was found to contain malicious applications. What can Arch Linux users do about this?