package: tini_0.19.0-3+b3_amd4.deb When installing tini from https://packages.debian.org/trixie/amd64/tini/download . The version of the package "tini_0.19.0-3+b3_amd64.deb" with signature "9803a1d1f1a5f7206825001744c2ab00dec8b865f470cbfdb40b3d339d10b71c" is being flagged as malware. Upon investigating in Virustotal, it appears this is a known detection where the "tini-static" file with checksum "14a3bdbf9e507ee266b51ec94f12c3411c630d177c3532f160539516612db2b6" specifically is showing signs of obfuscating itself and performing system calls. The versions of the package prior to this have no issues and are not identified as malware.
Virustotal link for tini_0.19.0-3+b3_amd4.deb ( https://www.virustotal.com/gui/file/9803a1d1f1a5f7206825001744c2ab00dec8b865f470cbfdb40b3d339d10b71c/relations ) VirusTotal Link for tini-static ( https://www.virustotal.com/gui/file/14a3bdbf9e507ee266b51ec94f12c3411c630d177c3532f160539516612db2b6/behavior ) I recommend investigating the tini package and tini-static subpackage and verifying that they are free of malware.

