3 ms·
I don't think that that's a good idea, because it implies trust when there actually isn't any. Being signed with something just means that whoever has that key
by hypfer 2mo ago
I don't think that that's a good idea, because it implies trust when there actually isn't any.
Being signed with something just means that whoever has that key could've done that. That might be the owner of a specific camera, but it might also be the camera manufacturer, anyone else in the supply chain, or anyone who dumped the key.
Imagine fake evidence signed with the same key as your camera uses being used in court against you. And the court believes it because it has this signature attached and those computers are very secure and all.
Exactly that will happen. Not widespread, of course, but it will.
- deadbabe 2mo agoImagine today where a photo is submitted as evidence and the court believes it even without signatures.
- hypfer 2mo agoPrecisely. Now take that, but glue a "the machine has cryptographically proven that this is legit" to that.
- Retr0id 2mo agoYes, it's a disaster waiting to happen.
- CamperBob2 2mo agoIt's a disaster that's already happened: https://en.wikipedia.org/wiki/British_Post_Office_scandal https://en.wikipedia.org/wiki/British_Post_Office_scandal