cross-posted from: https://lemmy.ml/post/13397700
Malicious KDE theme can wipe out all your data
Or is it just buggy?
This is why you back up your data!
I use both Timeshift and Lucky Backup.
Timeshift is setup to back up the entire OS and user data and fire off a backup when updating (onto an internal drive).
Lucky Backup has been setup to do a one way sync of my user folders (doc’s, download, pictures, videos etc) onto an external drive.
Stupid question maybe, but would your backups even be safe? Sure, it was mentioned that you had to enter your sudo password, but let’s say you did that because you are careless, “rm -rf” would wipe all connected and mounted drives as well, so your backups would be gone, wouldn’t they? Or does Timeshift mount and unmount on demand? If so, what would happen if you ran “rm -rf” while a backup is being saved?! It seems to me that a simple “make backups” isn’t enough here.
A ton of extensions are executing scripts, but this is generally behind a warning.
This REALLY has to change guys, and for that the getnewstuff backend must become better.
For example Dolphin extensions are still downloaded to some random download location that is not actually used.
And the packaging of addons is extremely random too.