Hacker News new | ask | show | jobs
by FooBarWidget 4880 days ago
You're right, I totally didn't think about that. Securing the C compilation system could give a false sense of security.

What we should have instead is a good signing infrastructure to detect when trusted gems have been tampered by a third party.