Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

There are version(s?) floating around that are infected.

Not (normally) on the source site - but there's no guarantee that someone doesn't MITM you and inject something.

Someone could host the download on an https site, and yes, it'd be an improvement, but that just moves who to trust to the site owner (and everyone on the certificate/hosting chain for the site).



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: