The security spectrum of curl | sh

December 12, 2016 at 1:00 PM (UTC)

The curl | sh pattern for installing software is much-maligned, and can definitely be used carelessly. But how bad it actually is a more nuanced question than you might think, a topic I wrote about over at Atomic Spin.