Attackers took over more than 400 packages in the Arch User
Repository (AUR) this week and rewrote their build scripts to
install a credential stealer on any machine that built them. The
malware is a Rust binary built to harvest developer secrets. When
it lands with root, it can also load an eBPF rootkit to hide
itself. The AUR is Arch Linux's community package collection, and
it is separate
Read more https://thehackernews.com/2026/06/400-arch-linux-aur-packages-hijacked-to.html

