3 ms·
You could always check the SHA256 from a separate device on separate network, ie your smartphone.
by infosecrf 9y ago
You could always check the SHA256 from a separate device on separate network, ie your smartphone.
- czbond 9y agoOriginal poster is suggesting that if one can change the downloaded file on the source location, then the same person can update the SHA256 string used to "guarantee authenticity". They're not suggesting a MTM style attack where one changes the string mid flight.