Hacker News new | ask | show | jobs
by curt15 127 days ago
checksums + tarballs don't help with runtime integrity verification. You'll need additional technologies for that like dm-verity or fs-verity; see composefs.