4 ms·
You can hardly call that good. It's like saying that Diginotar being compromised was good because then we could untrust their CA. It's true that we could do th
by throwaway125 13y ago
You can hardly call that good. It's like saying that Diginotar being compromised was good because then we could untrust their CA.
It's true that we could do that, but their original purpose was to protect us in the first place. The same is true for code signing certificates, to a certain extent.
- glhaynes 13y agoThe purpose of requiring code signing certificates for default trusted execution on OS X was to make Apple able to blacklist IDs used for malicious purpose (and perhaps to create at least some financial/identification trail). What more would you have wanted code signing to do here?