|
|
|
|
|
by vlovich123
990 days ago
|
|
You could build a more secure version and mandate it’s the only one used for new devices / in all future SW updates for phones. Over time it would supplant the old one and the vast majority of people would get the secure alert today. During an emergency you’d send both but spoofs would only be able to hit old phones that don’t receive software updates / don’t support the secure variant. Securing is also pretty simple since the government could just publish the public key they’ll use for signing these alerts and OS vendors could refresh that key on a regular basis. |
|
That would mean hundreds of keys to manage and regularly update, with various entities at various levels of government needing their own keys, etc. It's not impossible, but it certainly wouldn't be pretty simple for OS vendors.