Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
0 points
cjbprime
6y ago
0 comments
Share
I think you need OS codesigning integration for this threat model. Otherwise whatever special app runtime check code you add just gets removed by the malicious overwrite of your app code.
undefined | Better HN
0 comments
default
newest
oldest
some_furry
6y ago
I'm just doing this for secure updates, so that malware doesn't get delivered through the update mechanism. For precedent, see
https://core.trac.wordpress.org/ticket/39309
It isn't meant to mitigate a compromised endpoint.
j
/
k
navigate · click thread line to collapse