|
|
|
|
|
by mooreds
4239 days ago
|
|
Right. And really, who checks signatures? I'm a developer and I don't think I've every checked an md5 signature of a jarfile/gem/package I've downloaded. Nor have I ever been in an environment where that was ever mentioned. (Have mostly worked in small to medium businesses--I imagine that bigger orgs or the defense department might do this.) |
|