Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
RandomGerm4n
50 days ago
|
parent
|
context
|
favorite
| on:
GitHub Copilot CLI downloads and executes malware
This is precisely why tools such as Copilot CLI, Claude Code, OpenCode, etc. are best used within a VM or a rootless Podman container.
bigstrat2003
49 days ago
[–]
No, this is precisely why such tools are best unused at all. It is foolish in the extreme to give an LLM access to your system.
RandomGerm4n
49 days ago
|
parent
[–]
But it's not my system it's just a container that I can delete. If you already have the image it takes less than a second to deploy them. Podman is rootless, which makes it almost impossible for anything to escape from the container.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: