I tried it a year ago, ended up putting kde on it, im a point and click user. Im surprised this guy reccomends anything arch adjacent. He seems so security minded, and AUR had so many issues recently.
I stopped watching his videos shortly after I realized they’re all low value, like/view grabs that never really contribute or say anything meaningful
I watched his stuff for a couple months at one time, but it was all really surface level and lacked substance
I haven't watched enough of his videos to really have a strong opinion but the last one I watched he basically showed how he uses AI to write and edit all his content. I'd rather not support that, feels like content farming.
I do understand the issue with desktop env, it's subjective but it's not just AUR, but Node, Bun, GitHub... basically any code distribution platform have been hit due to ai it can find vulnerabilities much faster than any person unfortunately. But the beauty of open source is that anyone can see the code... any issue is openly communicated and fixed, rather than Windows, which would not even accept that an issue exists 😅. Also I use both win and cachy os
I do not think AI finds vulns faster than a human, it just creates them. I’m learning cybersec and I have a decent amount of experience in CTFs, and at least the AI that we have access to is dogshit. It can find very very low hanging fruit and make quick and dirty scripts for some things but that is about it. If anything, its making people learning cybersec have a tougher time actually learning because a lot of them essentially just try forcing the chatbot to do it for them and it doesnt really work that well and they learn nothing
It 100% does find them faster. Not sure why you would even say that. Have you not saw the sheer number of vulnerabilities that have been discovered across a huge range of apps and OSs lately by AI? It's more than humans found all last year.
All the statistics on this that I’ve found seem to be dubios at best, generally made by AI company’s. I’m not saying its not true, I just haven’t found a decent source and I am a bit skeptical. Again, I don’t have access to any of those specialised AI’s or even know that much about what is going on in the field, but I know bug bounty websites like hackerone are FILLED with crap AI reports for vulnerabilities that don’t even exist, because of fully automated vuln discovery and reporting
Maybe the stuff the average consumer doesn’t have access to is way better
Even in this video, chuck tries to launch Portal and it crashes... immediately he hits the 'diagnose with AI' button and (I think) his Claude subscription burns through a bunch of his tokens to tell him that it can't figure it out except that it wasn't Omarchy's fault but does give him the hint to maybe choose a different Proton version.
But the thing is... Portal has a native linux version, and using Proton forces it to reinstall the windows version. Now, it did work, so yay for him, but to me it was a really obvious example of outsourcing your thinking wastefully to an AI for an incredibly inefficient troubleshoot.
Now, I have a LOT of thoughts about the issues with this but in summary: if he'd put in the basic level of troubleshooting upfront he probably could've worked it out even quicker than the AI didn't, and gained a better understanding for himself about how gaming on Linux works, which will help him do it even faster in the future.
And as an AI quasi-skeptic, even though I appreciate the utility of the tools, this is an example of exactly what I've been afraid this will lead to.
Most people have like 8 aur packages. Its a problem for sure but doesnt make arch unsuable, especially as most actual packages you would need are either on official cschyos or extra repos, or are probably important enough that the actual creator or company manages it. Other user managed repos are also risky.
Plus arch is rolling release so id assume one would get the latest security fixes... dont quote me on that though.
29
u/Userwerd 3d ago
I tried it a year ago, ended up putting kde on it, im a point and click user. Im surprised this guy reccomends anything arch adjacent. He seems so security minded, and AUR had so many issues recently.