Post AudyJ58PW8Xu6SDmPQ by Rastal@mastodon.social
 (DIR) More posts by Rastal@mastodon.social
 (DIR) Post #Audxe2obEj6B2JO2Km by mttaggart@infosec.exchange
       2025-05-28T13:25:41Z
       
       1 likes, 0 repeats
       
       This is a cool idea. It's pretty wild how long Windows has lacked a central software update capability—at least a first-party one.But this also maybe feels like a fun attack surface.https://techcommunity.microsoft.com/blog/windows-itpro-blog/introducing-a-unified-future-for-app-updates-on-windows/4416354
       
 (DIR) Post #AudxnHFIx8KgOmHRNA by seanking@kazv.moe
       2025-05-31T05:44:09.221594Z
       
       0 likes, 0 repeats
       
       @mttaggart Congrats to Microsoft on reinventing package management systems. Lel
       
 (DIR) Post #Audy9jkHfkDP9xTpuy by Epic_Null@infosec.exchange
       2025-05-28T15:42:31Z
       
       1 likes, 0 repeats
       
       @mttaggart I will be interested to see what goes wrong here that Linux repositories have had right for years.
       
 (DIR) Post #AudyBuaiJrm5NN2bFA by mttaggart@infosec.exchange
       2025-05-28T15:48:26Z
       
       1 likes, 0 repeats
       
       @Epic_Null If I get what's going on, there is no central repo of packages here. This ain't winget. Instead, apps on any given endpoint can register with the Windows Update service to tell the service how to update the app.So you can see why I'm concerned.
       
 (DIR) Post #AudyC5D0qKLsJ32KKO by Epic_Null@infosec.exchange
       2025-05-28T16:01:54Z
       
       1 likes, 0 repeats
       
       @mttaggart I am sorry, WHAT?!?!?!THERE ARE SO MANY THINGS WRONG WITH THAT PLAN!!!This feels somehow WORSE than what we have now!
       
 (DIR) Post #AudyJ58PW8Xu6SDmPQ by Rastal@mastodon.social
       2025-05-28T16:03:56Z
       
       1 likes, 0 repeats
       
       @mttaggart Cygwin and Chocolatey - both should have been more mainstream than they ever were.
       
 (DIR) Post #AudyJ8DU3jO1f3cNEW by mttaggart@infosec.exchange
       2025-05-28T16:15:59Z
       
       1 likes, 0 repeats
       
       @Rastal Scoop.sh also!
       
 (DIR) Post #AudyWVlVogBQSeukro by chillybot@infosec.exchange
       2025-05-28T13:41:51Z
       
       1 likes, 0 repeats
       
       @mttaggartHopefully this will make things easier to patch, Windows Store always messes stuff up
       
 (DIR) Post #AudyWkaMiPBCQQoZ4i by mttaggart@infosec.exchange
       2025-05-28T13:52:01Z
       
       1 likes, 0 repeats
       
       @chillybot The .appx and .msix formats are extremely annoying. My big question with this is who gets to register an app, and how do those update processes get run? I can see some interesting abuse cases there.