linux isnt immune to viruses even though its not as bad as windows
what should i do to be safe if i have a safe browser, vm, but pirate and download risky things? i know its a vm but i still dont want to have to delete everything in the vm if something happens. also the malware doesnt go to the router and spread rigt???
don’t get software from random sites and use your package manager with distro provided repo only
And if you need an app from a third party repo, pick one that includes at least rudimentary sand boxing such as flatpak/flathub
Take regular VM snapshots and never forget that exploits can breach the VM
Rather, malware detect the vm, assume a security lab testing environment and hold still. Don’t take that stuff outside.
very rare for exploits that can breach a VM. Like once-every-10-years kind of rare.
One important thing to be aware of. By default your VM will have access to the same network resources as the host. So, say, if you use tailscale or some other secure VPN to protect your NAS, but you give your host access, the VM will be able to access it too! You can use firewall rules or bridge networking to fix this, but tbh it isn’t trivial.
Pick a piracy site you can trust. It makes things easier.
Don’t trust any piracy site, even the ones you trust.
I rather recommend torrents and download files named like “Rihanna.mp3.exe”. This is to my knowledge the most secure source.
You’re totally right, the .exe stands for excellence. /s
Malware could go to the router and spread absolutely. However other devices firewalls should be pretty good at stopping that. Also I dont know how common that is for malware tbh
I think most common is phishing attacks, scammers, and then shady downloads.
Less common is probably dependency attacks, xss, and exploiting servers in the traditional way, and probably a bunch of other attack vectors.
I have always kept everything airgapped, the best security is isolation.
I download stuff to a tablet, with nothing of value or interest on it, dump it to the sd card, then move it to the offline systems with a USB card reader.
Even my servers (mostly ARM SBCs with one RISC-V) were set up to work over a wired offline network.
Also most of my pirated stuff is things I own that I yarred for the crack if it was more convenient than cracking it myself.
Not gonna lie, that sounds like overkill unless you’re doing something massively illegal. Your system makes no sense for preventing detection of torrent downloading since the download to the tablet could be detected just like the download to a server, and any precaution to avoid torrent surveillance on the tablet could easily be done on the server itself.
So…are you doing something massively illegal? Take a seat…

You can just use a VM and an antivirus on Windows. Linux isn’t really necessary for your scenario
It’s best to start using different OSs for different things assuming that no single OS is truly safeYeah but we don’t want to use Microslop!
OP is the kind of user who used Tails on his own computer to log into his Gmail account. He has grammar issues and thinks Linux is this hacker OS that makes you anonymous and impossible to hack
Let’s be real, do you think this is the best thing for OP who is presumably a child?








