Uploaded December 2025 | Updated September 2026, 2 weeks ago
This week on Destination Linux, we are joined by a special guest host: Craig Rowland, the CEO of Sandfly Security! We’re diving deep into the reality of modern security—specifically when third-party code knocks over your castle. From malicious VSCode extensions to the "React2Shell" vulnerability, we discuss why "Open Source" doesn't automatically mean "Safe" and how to protect your supply chain.
Then, is it possible to have the macOS experience without the Apple ecosystem? Ryan explores ravynOS, a daring new project with "macOS vibes and a BSD soul." It’s attempting to bring the Aqua interface—and eventually Mac app compatibility—to the open-source world.
Plus, Jill brings us massive news from Canonical and AMI. You might soon be installing Ubuntu directly from your motherboard's BIOS without ever needing a USB drive. We break down how this partnership changes the game for hardware.
Finally, we read an incredible listener story.
Show Notes:
00:00:00 Intro
00:02:39 Extended Intro: Open Source or Bust
00:03:08 Community Feedback: A Pentester’s Origin Story
00:10:03 Guest Host: Sandfly Security & Agentless Protection
00:15:53 Security Deep Dive: Supply Chain Attacks, Malicious VSCode Extensions & React2Shell
00:44:31 ravynOS: The Open Source Mac Killer?
00:56:05 News: Canonical + AMI: Installing Ubuntu from the BIOS
01:08:07 Outro
01:09:33 Post-Show Shenanigans
Support the Show:
Sponsored by Sandfly Security: destinationlinux.net/sandfly - Get 50% off the Home Edition with code DESTINATION50
This week on Destination Linux, we are joined by a special guest host: Craig Rowland, the CEO of Sandfly Security! We’re diving deep into the reality of modern security—specifically when third-party code knocks over your castle. From malicious VSCode extensions to the "React2Shell" vulnerability, we discuss why "Open Source" doesn't automatically mean "Safe" and how to protect your supply chain.
Then, is it possible to have the macOS experience without the Apple ecosystem? Ryan explores ravynOS, a daring new project with "macOS vibes and a BSD soul." It’s attempting to bring the Aqua interface—and eventually Mac app compatibility—to the open-source world.
Plus, Jill brings us massive news from Canonical and AMI. You might soon be installing Ubuntu directly from your motherboard's BIOS without ever needing a USB drive. We break down how this partnership changes the game for hardware.
Finally, we read an incredible listener story.
Show Notes:
00:00:00 Intro
00:02:39 Extended Intro: Open Source or Bust
00:03:08 Community Feedback: A Pentester’s Origin Story
00:10:03 Guest Host: Sandfly Security & Agentless Protection
00:15:53 Security Deep Dive: Supply Chain Attacks, Malicious VSCode Extensions & React2Shell
00:44:31 ravynOS: The Open Source Mac Killer?
00:56:05 News: Canonical + AMI: Installing Ubuntu from the BIOS
01:08:07 Outro
01:09:33 Post-Show Shenanigans
Support the Show:
Sponsored by Sandfly Security: destinationlinux.net/sandfly - Get 50% off the Home Edition with code DESTINATION50

![In Case of Emergency, Release Raptor [Gaming on Linux]
This clip is from Destination Linux 361, to watch the full episode go to https://youtu.be/h_9o8RBMsnA
For show notes and other ways to enjoy the show, go to https://destinationlinux.net/361
The developer describes the game like this:
“A passion project that never found its footing. But we thought the (very) early pieces of the game were cool, so we wanted you to have it for free. Run around, be a raptor, and kill robots!”
https://store.steampowered.com/app/471770/In_Case_of_Emergency_Release_Raptor/ In Case of Emergency, Release Raptor [Gaming on Linux]](https://i.ytimg.com/vi/zMpVjrzQ4zI/mqdefault.jpg)
