linux isnt immune to viruses even though its not as bad as windows

what should i do to be safe if i have a safe browser, vm, but pirate and download risky things? i know its a vm but i still dont want to have to delete everything in the vm if something happens. also the malware doesnt go to the router and spread rigt???

    • Vittelius@feddit.org
      link
      fedilink
      arrow-up
      1
      ·
      6 hours ago

      And if you need an app from a third party repo, pick one that includes at least rudimentary sand boxing such as flatpak/flathub

      • ShankShill@sh.itjust.works
        link
        fedilink
        arrow-up
        1
        ·
        47 minutes ago

        And if you pegleg some games, there’s an ice cream-loving wrestler (or maybe some folk that just borrowed the id) that tend to bubble wrap their warez.

        If it says no network access, my Wireshark says no network is being accessed. That’s all the confirmation I got.

    • hirihit640@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      3
      ·
      6 hours ago

      very rare for exploits that can breach a VM. Like once-every-10-years kind of rare.

      One important thing to be aware of. By default your VM will have access to the same network resources as the host. So, say, if you use tailscale or some other secure VPN to protect your NAS, but you give your host access, the VM will be able to access it too! You can use firewall rules or bridge networking to fix this, but tbh it isn’t trivial.

      • nyan@sh.itjust.works
        link
        fedilink
        arrow-up
        1
        ·
        2 hours ago

        Depends on your VM. qemu, by default, isolates each VM on a subnet. It’s a PITA when you actually need the VM to be able to see the LAN.

    • MonkderVierte@lemmy.zip
      link
      fedilink
      arrow-up
      1
      ·
      5 hours ago

      Rather, malware detect the vm, assume a security lab testing environment and hold still. Don’t take that stuff outside.

  • minty@aussie.zone
    link
    fedilink
    arrow-up
    11
    ·
    14 hours ago

    Malware could go to the router and spread absolutely. However other devices firewalls should be pretty good at stopping that. Also I dont know how common that is for malware tbh

    • hoshikarakitaridia@lemmy.world
      link
      fedilink
      arrow-up
      7
      ·
      14 hours ago

      I think most common is phishing attacks, scammers, and then shady downloads.

      Less common is probably dependency attacks, xss, and exploiting servers in the traditional way, and probably a bunch of other attack vectors.

  • Hakuso@scribe.disroot.org
    link
    fedilink
    arrow-up
    6
    ·
    14 hours ago

    I have always kept everything airgapped, the best security is isolation.

    I download stuff to a tablet, with nothing of value or interest on it, dump it to the sd card, then move it to the offline systems with a USB card reader.

    Even my servers (mostly ARM SBCs with one RISC-V) were set up to work over a wired offline network.

    Also most of my pirated stuff is things I own that I yarred for the crack if it was more convenient than cracking it myself.

    • WeirdGoesPro@lemmy.dbzer0.com
      link
      fedilink
      arrow-up
      10
      arrow-down
      2
      ·
      10 hours ago

      Not gonna lie, that sounds like overkill unless you’re doing something massively illegal. Your system makes no sense for preventing detection of torrent downloading since the download to the tablet could be detected just like the download to a server, and any precaution to avoid torrent surveillance on the tablet could easily be done on the server itself.

      So…are you doing something massively illegal? Take a seat…

      Chris Hansen looking like he knows what you did

  • Sapphy@lemmy.ml
    link
    fedilink
    arrow-up
    2
    arrow-down
    8
    ·
    10 hours ago

    You can just use a VM and an antivirus on Windows. Linux isn’t really necessary for your scenario

    • Sapphy@lemmy.ml
      link
      fedilink
      arrow-up
      3
      arrow-down
      1
      ·
      9 hours ago

      It’s best to start using different OSs for different things assuming that no single OS is truly safe

        • Sapphy@lemmy.ml
          link
          fedilink
          arrow-up
          1
          ·
          6 hours ago

          OP is the kind of user who used Tails on his own computer to log into his Gmail account. He has grammar issues and thinks Linux is this hacker OS that makes you anonymous and impossible to hack

          Let’s be real, do you think this is the best thing for OP who is presumably a child?

          • hexagonwin@lemmy.today
            link
            fedilink
            arrow-up
            5
            ·
            5 hours ago

            i mean if op is a legit kid, i’d rather lead them to the world of linux than windows. at least that’s what worked nicely for me

            and please don’t accuse people of grammar issues unless it’s very obvious they’re trolling. english is not everyone’s first language. i’m also not a native speaker and struggle writing basic shits quite occasionally