惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

罗磊的独立博客
大猫的无限游戏
大猫的无限游戏
WordPress大学
WordPress大学
酷 壳 – CoolShell
酷 壳 – CoolShell
T
Tailwind CSS Blog
Engineering at Meta
Engineering at Meta
MongoDB | Blog
MongoDB | Blog
爱范儿
爱范儿
小众软件
小众软件
MyScale Blog
MyScale Blog
美团技术团队
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
S
SegmentFault 最新的问题
G
Google Developers Blog
Stack Overflow Blog
Stack Overflow Blog
V
V2EX
量子位
云风的 BLOG
云风的 BLOG
A
About on SuperTechFans
阮一峰的网络日志
阮一峰的网络日志
Last Week in AI
Last Week in AI
Martin Fowler
Martin Fowler
C
Check Point Blog
月光博客
月光博客

Arch Linux: Recent news updates

virtualbox-ext-vnc >= 7.2.12-2 requires manual intervention News: Arch Linux 2026 Leader Election Results News: Breaking changes for all users of `varnish`, which is renamed to `vinyl-cache` News: kea >= 1:3.0.3-6 update requires manual intervention News: iptables now defaults to the nft backend News: NVIDIA 590 driver drops Pascal and lower support; main packages switch to Open Kernel Modules News: .NET packages may require manual intervention News: waydroid >= 1.5.4-3 update may require manual intervention News: dovecot >= 2.4 requires manual intervention Arch Linux - News: Recent service outages News: zabbix >= 7.4.1-2 may require manual intervention News: linux-firmware >= 20250613.12fe085f-5 upgrade requires manual intervention
News: Active AUR malicious packages incident
Campbell Jon · 2026-06-13 · via Arch Linux: Recent news updates

We are currently experiencing a high volume of malicious package adoptions and updates in the Arch User Repository.

We are actively working to track down existing malicious commits and attempting to prevent additional malicious commits from being pushed. While this is happening, and while we work to create a more permanent solution, users may see issues with the following:

  • Creating new accounts on the AUR
  • Pushing package updates
  • Adopting or creating new packages

We continue to encourage all users of AUR packages to review all PKGBUILD and install script changes when updating, especially during this time. If you notice suspicious commits to a package that you use, please reach out to Arch staff via the aur-general mailing list with more information.