Is Omarchy SAFE? I Tested My Own Installation (Not What I Expected)

Is Omarchy SAFE? I Tested My Own Installation (Not What I Expected)

Video by Linux Tex via YouTube
Is Omarchy SAFE? I Tested My Own Installation (Not What I Expected)

Get Theme Studio – Massive Introductory Discount
https://payhip.com/LinuxTex

Omarchy 4 is one of the most impressive Linux desktops I have ever used. But it ships with yay, the AUR helper, pre-installed by default. And the Arch User Repository just went through the worst security crisis in its history. So I ran the commands and checked exactly what my Omarchy install was actually trusting, and the answer genuinely surprised me.

In this video I break down the 2026 AUR malware attacks, what the malware actually stole, whether Omarchy 4 (Quattro) uses AUR packages out of the box, the hidden AUR stage inside the Omarchy updater, and why I ended up removing yay from my own machine while still keeping Omarchy as my daily driver.

To be clear up front: Omarchy itself is safe. This video is about the AUR, and about what you choose to install on top of a perfectly good Arch-based distro.

WHAT I COVER IN THIS VIDEO

– What the AUR (Arch User Repository) actually is, and why it is not a vetted, verified app store
– The orphan adoption exploit that let attackers take over real packages with real names and real users
– Around 1,500 AUR packages poisoned across multiple waves, stealing SSH keys, GitHub credentials, browser cookies, Slack and Discord data
– Arch fighting back: closed account registrations, disabled package adoption, and a full ten day freeze on all AUR uploads
– The xsnow package poisoned through a legitimate co-maintainer, with the payload hidden in .install files instead of the PKGBUILD everyone tells you to read
– hyprland-fixes: a brand new malicious package named after the compositor Omarchy actually runs on
– Testing my own system with pacman -Qm to list every foreign package, and what actually came back
– The four repositories Omarchy really pulls from: core, extra, multilib and omarchy
– Why being based on Arch does not mean Omarchy installs packages from the AUR
– The hidden catch: the AUR stage inside omarchy update, and why every future update to an AUR package is code you are trusting sight unseen
– Why Omarchy Stable is a reliability buffer and not an AUR malware quarantine
– What meaningful package review actually takes, and why reading the PKGBUILD is not enough
– Why I removed yay, and why that is not the same thing as disabling the AUR
– Why I now stick to official stores, official websites, official GitHub repos, and Flatpak with verified publishers and sandboxing

SUPPORT THE CHANNEL

If you found this useful, hit the thumbs up and subscribe for more Linux desktop reviews, distro deep dives and Linux security breakdowns.

TOPICS COVERED

omarchy, omarchy 4, omarchy quattro, is omarchy safe, omarchy review, omarchy linux, arch linux, arch user repository, aur, aur malware, aur hacked, aur security, aur malware attack 2026, yay aur helper, remove yay, pacman -Qm, foreign packages arch, hyprland, hyprland-fixes malware, xsnow malware, pkgbuild security, linux supply chain attack, linux malware, linux security, arch linux security, flatpak vs aur, flatpak sandboxing, dhh omarchy, hyprland desktop, linux desktop 2026

#Omarchy #ArchLinux #LinuxSecurity #AUR #Hyprland #Linux

Source

Open Source Digest: R, RAG, Security & More

Open Source Digest: R, RAG, Security & More

Introduction Welcome to this week’s Open Source Digest, where we bring you a curated selection of news, insights, and updates from across the open source ecosystem. From technical deep dives to industry trends and security alerts, there’s something for every OS enthusiast. Development & Tools Social Coworking and Office Hours: Code Linting in R ESP32-S3: … Read more

Open-Source AI Surges: From Edge Drivers to Big Tech Strategy

Open-Source AI Surges: From Edge Drivers to Big Tech Strategy

Introduction In the ever-evolving landscape of technology, open-source innovation continues to make waves across multiple fronts. From GPU driver advancements enabling AI on embedded devices to strategic shifts by tech giants and even geopolitical implications, the open-source ecosystem is proving to be a hotbed of activity. This digest highlights key stories that underscore the growing … Read more

Open Source Insights: AI, Linux, & DIY

Open Source Insights: AI, Linux, & DIY

The Open Source Ecosystem: A Week of Contrasts From the grassroots ingenuity of a $30 wind turbine to the sophisticated orchestration of enterprise AI, this week’s news highlights the remarkable breadth and resilience of the open source movement. The stories underscore a fundamental truth: open source is not just about free software, but about empowerment, … Read more

$30 Wind Turbine 65 mph Survival Test

 Wind Turbine 65 mph Survival Test

Video by OpenSourceLowTech via YouTube
 Wind Turbine 65 mph Survival Test

https://patreon.com/OpenSourceLowTech
Tested on the back of a car on a country road in New Zealand.
Construction tutorial at: https://opensourcelowtech.org/wind_turbine.html

This is the second test of the super low cost ($30), easy to construct (6 hours for two people) build of the Lenz2 vertical axis design, with the intention being of surviving sustained 100 km/h winds.
I didn’t log and graph the RPMs on this run as I did in the last, as we had an intermittent tail wind which kind of messed up the data.
I’m pretty happy with 105 km, the next step is attaching a car alternator or pump with a chain and getting some usable power off the thing.

Source

Orchestration & Agent Harness: How AI Systems Are Coordinated

Orchestration & Agent Harness: How AI Systems Are Coordinated

Video by H2O.ai via YouTube
Orchestration & Agent Harness: How AI Systems Are Coordinated

Most AI systems are not one model doing everything. They are several components working together, and something has to keep them in sync.

Think of an insurance claim: one component extracts information from documents, another checks it against policy rules, another routes the case to the right team. Orchestration is the logic that decides which does what, in what order, and what gets passed between them.

Terms covered:
– Orchestration: the coordination layer across components
– Agent Orchestration: orchestration applied to autonomous agents handing off work
– Agent Runtime: the execution environment where agents actually operate
– Agent Harness: the framework connecting agents, tools, memory and instructions into one system

This is how AI goes from a single smart response to a coordinated system handling complex, multi-step work at scale.

—
AI Fundamentals Glossary | H2O.ai University
Full playlist: https://www.youtube.com/playlist?list=PLAWKlIKS-66E
Free courses and certifications: https://h2o.ai/university

#AgenticAI #AIOrchestration #AI #AIGlossary #H2Oai

Source

GPT-6 Astra with Tom Krcha

GPT-6 Astra with Tom Krcha

Video by OpenAI via YouTube
GPT-6 Astra with Tom Krcha

Tom Krcha shares his first impressions of GPT-6 Astra through a customizable logo tool, website designs with coordinated visual details, and adjustable photo shaders. He explores how the model helps designers develop ideas, build interactive prototypes, and bring a clearer creative direction to their engineering teams.

Source

Building high-performance recommendation inference systems using PyTorch

Building high-performance recommendation inference systems using PyTorch

Video by PyTorch via YouTube
Building high-performance recommendation inference systems using PyTorch

At PyTorch Conference 2026, Lu Fang, Research Scientist, and Ilina Mitra, Engineering Manager at Meta, will present a deep dive on building high-performance recommendation inference systems.

They will detail end-to-end production workflows, covering graph capture, model splitting, and serving across large-scale platforms like Facebook and Instagram. Attendees will gain technical insights into advanced optimizations for high TPS and low latency, as well as strategies for multi-accelerator support to handle diverse machine learning workloads at scale.

Register now and connect with the open source AI community in San Jose, CA, October 20-21: https://hubs.la/Q04w5M9L0

Source

Open Foundations for Trustworthy Agentic AI in Financial Services – Jochen Papenbrock, NVIDIA

Open Foundations for Trustworthy Agentic AI in Financial Services - Jochen Papenbrock, NVIDIA

Video by FINOS via YouTube
Open Foundations for Trustworthy Agentic AI in Financial Services - Jochen Papenbrock, NVIDIA

Dr. Jochen Papenbrock (EMEA Head of Financial Technology at NVIDIA) breaks down Jensen Huang’s 5-Layer AI Factory stack and explores how open-source foundation models power production-grade financial applications. From Royal Bank of Canada’s multi-modal equity research agents to Revolut’s custom transaction foundation models, Jochen details the open microservices, agent toolkits, and guardrailing frameworks needed to scale trustworthy AI in regulated banking.

🗽 Catch Us in New York! Ready to build scalable, trustworthy AI infrastructure? Join us at OSFF New York on November 4–5, 2026.
🎟️ Register Now: https://hubs.ly/Q04n_bZL0
🔥 20% OFF DISCOUNT CODE: 26YTOSFFNY20C

🕒 Timestamps:
0:00 Introduction: Deconstructing Jensen’s 5-Layer AI Factory Stack
1:03 The AI-Powered Bank: Post-Training Customization & Intelligence Flywheels
2:32 RBC Case Study: Accelerated Multi-Modal Deep Research Workflows
3:49 Next Frontier: Training Transactional Foundation Models from Scratch
4:46 Revolut & Payments Industry Blueprint: Tabular Transformers in Action
5:35 The Flywheel Engine: NeMo Microservices & NeMo Guardrails
7:02 The Nemotron Model Family: High-Efficiency Reasoning and Agent Harnesses
8:24 Managing Agent Fleets: NeMo Agent Toolkit & Profiling Latency Gains
9:28 Deep Research Blueprints: Equity Analysis Architecture
10:54 NeMo OpenShell: Trust Boundaries and Policy Signing Gateways
12:20 Summary: TCO Optimization, Token Manufacturing, and GPU Acceleration

📊 The Problem: The High Friction of Siloed Financial AI Systems
Deploying point-solution AI models without a cohesive platform leads to massive hardware inefficiencies, high latency, and data privacy vulnerabilities. Financial institutions attempting to run agentic workflows across fragmented infrastructure struggle with high token costs, difficult regulatory compliance tracking, and an inability to continuously capture operational learnings back into their systems.

🏗️ The Solution: The 5-Layer AI Factory & NeMo Ecosystem
Jochen Papenbrock provides a full-stack blueprint to operationalize AI inside banks:

Custom Post-Training & Weights Control: Utilizing open-source foundation models (like Nemotron) where banks retain access to model weights, enabling internal domain tuning for high-precision tasks.

NeMo Microservices & Guardrails: Deploying open-source runtime checks, benchmarking tools, and GPU-accelerated policy enforcement layers to secure agent interactions.

Tabular Transaction Transformers: Moving beyond text-based LLMs to train custom transactional foundation models from scratch using tabular customer behavior data.

⚙️ Why This Matters for Financial Engineering

Open Shell Security Boundaries: Enforcing model-agnostic trust boundaries and policy signing gateways around every agent action in production.

Optimized Token TCO: Co-designing software microservices directly with underlying GPU hardware to maximize token generation throughput while minimizing energy and infrastructure costs.

🌐 More about FINOS: https://www.finos.org/
📧 Join our newsletter: https://www.finos.org/sign-up
🎙️ Listen to our Open Source in Finance Podcast: https://www.youtube.com/@FINOS/podcasts
LinkedIn: https://www.linkedin.com/company/finosfoundation

#FINOS #OSFFNewYork #NVIDIA #NeMo #Nemotron #AIFactory #CapitalMarkets #TabularTransformers #GPUAcceleration #FinTech #JochenPapenbrock

Source

SAP Skills for Future Careers | BINUS Indonesia and SAP

SAP Skills for Future Careers | BINUS Indonesia and SAP

Video by SAP via YouTube
SAP Skills for Future Careers | BINUS Indonesia and SAP

How can universities prepare students for a workforce shaped by AI, digital platforms, and enterprise technology?

See how BINUS University in Indonesia is helping students build practical SAP skills for the global workforce. Through the SAP University Alliances program, BINUS integrates ERP learning into its curriculum and gives students access to SAP Learning Hub, student edition, classroom training, practice systems, and SAP Certification opportunities.

In this story, students and lecturers share how hands-on SAP learning helps connect academic study with real business processes. From preparing for roles such as SAP functional consultant, SAP technical consultant, and SAP business analyst to building confidence in interviews and onboarding, the BINUS journey shows how university and industry collaboration can help shape the next generation of digital talent.

Students and lecturers can explore SAP Learning Hub, student edition, and universities can learn more about SAP University Alliances:
https://sap.to/6056BGGKm2

Chapters:
00:00 – Preparing students for the future of work
00:29 – Bringing SAP learning into the classroom
01:07 – Building skills with SAP Learning Hub
01:40 – Student perspectives
02:18 – Shaping Indonesia’s digital talent
02:36 – Explore SAP University Alliances

Follow us on social:
LinkedIn: https://sap.to/6057BGGKmN
Instagram: https://sap.to/6058BGGKm4
Facebook: https://sap.to/6059BGGKmf
Threads: https://sap.to/6051BGGKm7

About SAP:
As a global leader in enterprise applications and business AI, SAP stands at the nexus of business and technology. For over 50 years, organizations have trusted SAP to bring out their best by uniting business-critical operations spanning finance, procurement, HR, supply chain, and customer experience. For more information, visit: https://sap.to/6053BGGKmh

#SAP #SAPLearning #FutureOfWork

Source