Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Wait... so the ledger allows any firmware to be uploaded without signature checking? damn :(


Seems insane right? Their entire userbase only exists because of the power that PKCrypto gives us to build lasting lines of trust and they don't sign firmware images....




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: