• XLE@piefed.social
    link
    fedilink
    English
    arrow-up
    24
    ·
    5 hours ago

    Better title: “make sure you’re on the official website when you’re trying to download software, even if you’ve used it before”.

    The list includes widely used tools like PowerToys, CrystalDiskMark, EasyBCD, Lively Wallpaper, and Wintoys, all cloned onto lookalike domains that in most cases rank above the real project pages on Google.

    Off the top of my head, I wouldn’t know the right domain to download CrystalDiskMark or EasyBCD, for example. It doesn’t sound like these clones are perfect replicas, but a convincingly close enough domain name with the same page contents might fool a ton of people

    • grue@lemmy.world
      link
      fedilink
      English
      arrow-up
      9
      ·
      3 hours ago

      Off the top of my head, I wouldn’t know the right domain to download CrystalDiskMark or EasyBCD, for example.

      The way to find out the correct domain is to go to the Wikipedia page about the software.

      But actually, the right way to do it is to install software using your Linux distro’s package manager.

    • Snot Flickerman@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      1
      ·
      5 hours ago

      Yeah, this “similar enough sounding domain name” tactic is far from new, and they must just be using new SEO tricks to get their sites to surface to users, that or illegitimate ad services promoting them.

      • Em Adespoton@lemmy.ca
        link
        fedilink
        English
        arrow-up
        2
        ·
        4 hours ago

        They’re actually usually optimized to get AI to serve you the download link… or in the case of agentic browsers, just find, download and run it for you.

  • YaDownWitCPP@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    15
    ·
    4 hours ago

    This is why you shouldn’t be allowed to side load apps on your computer. All apps should be vetted through the Window’s Store then all of the cyber security issues would be resolved.

    • MaggiWuerze@feddit.org
      link
      fedilink
      English
      arrow-up
      2
      ·
      46 minutes ago

      Yeah, just like with Android or iOS… Oh wait all these stores are loaded with malware… So how about I do with MY hardware as I please and you go back to sucking corpo dick?

  • chrash0@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    arrow-down
    26
    ·
    6 hours ago

    Windows users get what they deserve here. Windows gave you an app store, and you spat on it. maybe it was a bad implementation, but signed apps exist for a reason.

    • grue@lemmy.world
      link
      fedilink
      English
      arrow-up
      11
      ·
      3 hours ago

      Free Software package managers are good, because having somebody who knows what they’re doing curate the apps for you is helpful. “App stores” are evil, because you’ve replaced that expert with a salesperson with a vested interest in exploiting you.

      • chrash0@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        9
        ·
        3 hours ago

        again, why do you hate yourself? do you think using Windows and holding it wrong is empowering? i don’t get it.

        trust is required somewhere. if you don’t trust Microsoft, why would you use Windows in the first place?

        • grue@lemmy.world
          link
          fedilink
          English
          arrow-up
          8
          ·
          2 hours ago

          I use Linux and have done exclusively for almost a decade, dipshit. Get some reading comprehension skills.

    • Reygle@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      5 hours ago

      Boy oh boy, was it ever a bad implementation. Whoooo nelly was (is) that.
      I use PPAs in Linux and I stay clear of the AUR. Entire open source projects have added such things to Windows but Microslop still rejects doing it properly themselves. Torches and pitchforks for Redmond one day!

        • Reygle@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          5 hours ago

          Wait Winget is a user repository- as-in it’s completely unpoliced? Hahah I stand corrected

          • Sinirlan@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            4 hours ago

            According to MS there are various validation steps when app is added to repository, including virus checks:

            Each submission to the Windows Package Manager Repository is run through several antivirus programs. These programs all have different virus detection algorithms for identifying potentially unwanted applications (PUA) and malware.

            https://learn.microsoft.com/en-us/windows/package-manager/package/repository#validation-process

            So I guess it’s safer to install apps trough winget, at least as much as much You trust Microslop doing good job.

            • Reygle@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              ·
              4 hours ago

              at least as much as much You trust Microslop doing good job.

              In my case that’s not at all, but I learned something today, thanks

      • chrash0@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        1
        ·
        4 hours ago

        why work on a feature that your users categorically reject? this isn’t me projecting, i literally have this conversation with a buddy all the time. he’s a programmer and talks about all the problems with Windows like there aren’t options. use the OS the way the devs designed it, pick a different one, or stfu