3 ms·
So presumably they didn't even bother to sign their library to make sure that users can verify that it is an authorised build? This is exactly the kind of secur
by this_user 3y ago
So presumably they didn't even bother to sign their library to make sure that users can verify that it is an authorised build? This is exactly the kind of security practices that I expect from the so-called crypto "industry".
- waynesonfire 3y agobut gpg is "complicated" I wouldn't even know how to verify the signature! Instead, I'd rather my wallet be drained instead of RTFM.