Comment by grishka
4 hours ago
For me, the solution is simple: anything you download and run locally should not auto-update ever, period. Installing an update (or refusing one) should always be a conscious user action. Otherwise it's just a socially-accepted RCE backdoor.
No comments yet
Contribute on Hacker News ↗