3 ms·
The way I understand it is a signature is included in the binaries and when run the software will hash the binaries and the result is compared to the signature.
by MPlus88 4y ago
The way I understand it is a signature is included in the binaries and when run the software will hash the binaries and the result is compared to the signature. If the two don't match the software has been tempered and the software won't run. If it is that easy to remove the signature then what is the point of signing a software? It will be like your first floor home has a steel door but the window is wide open.
- remexre 4y agoI think this is the OS-level signature verification; so the OS (possibly with nudging) will still allow you to _run_ the binary, but won't say "this is from FooCorp" and may nag the user on startup "this is a potentially untrustworthy binary"