Hacker News new | ask | show | jobs
by bigmadwolf 1115 days ago
An expired certificate should not cause that. I'd be very surprised if they did not have a cryptographic timestamp [1] on the driver signature. The presence of the timestamp allows the signature to be verified after the signing certificate has expired.

1 https://en.wikipedia.org/wiki/Code_signing#Time-stamping

1 comments

OK upon actually reading the article it looks like they didn't include a timestamp - ouch.