[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: Tor Project infrastructure updates in response to security breach



Mike Perry wrote:
> 
> I suppose I could also create a rogue code signing certificate and
> provide that over SSL for people to install, but then I wonder if
> vanilla Firefox will reject my XPIs then because they are signed, but
> with an "invalid" cert.
> 

I have a few of those laying around. I guess we could run some tests and
find out?

Best,
Jake

Attachment: signature.asc
Description: OpenPGP digital signature