logoalt Hacker News

IshKebabyesterday at 9:16 AM2 repliesview on HN

Almost like it's actually fine.

https://medium.com/@ewindisch/curl-bash-a-victimless-crime-d...


Replies

ueckeryesterday at 10:37 AM

It is definitely not fine. The argument seems to be that since you need to trust somebody, curl | bash is fine because you just trust whoever controls the webserver. I think this is missing the point.

show 3 replies
oguz-ismailyesterday at 9:47 AM

[flagged]