|
|
|
|
|
by Ajedi32
926 days ago
|
|
That's really clever! Fixes the "silently" part at least, though given that most applications typically require frequent updates and that this doesn't prevent targeted attacks, I'm not sure how useful it is in practice, at least for mainstream applications. Signed web bundles with binary transparency and independent review would be far superior, if they actually existed. (Which sadly, they don't right now.) |
|