Мерц резко сменил риторику во время встречи в Китае09:25
System package managers work differently because they separate those two things. When someone pushes a new version of an upstream library, it doesn’t appear in apt install or brew install until a distribution maintainer has reviewed the change, updated the package definition, and pushed it through a build pipeline. Fedora packages go through review and koji builds, Homebrew requires a pull request that passes CI and gets merged by a maintainer. A compromised upstream tarball still has to survive that process before it reaches anyone’s machine, and the people doing the reviews tend to notice when a patch adds an obfuscated postinstall script that curls a remote payload.
,推荐阅读新收录的资料获取更多信息
operator = step:
I find Bourdieu personally appealing, and I think this book has important ideas. Still, here’s how I read that quote:
The Saudis are in communication with the Iranian ambassador to Riyadh on a near daily basis to reiterate that the kingdom’s territory is not being used by the US or anyone else to attack Iran, said another person with knowledge of the situation. Saudi Arabia is also saying to Iran that if it keeps up its attacks, the kingdom may be forced to retaliate, the person said. Still, Saudi authorities don’t have high confidence they can stop the war at this stage, the person said.