[Cryptography] Cryptographic signing of software is security theater

Sam Hartman hartmans at mit.edu
Sat Dec 3 16:17:40 EST 2022


>>>>> "Jerry" == Jerry Leichter <leichter at lrw.com> writes:


I don't know much about Android.
I'm guessing rotating such a key must be harder than usual.
I'd be interested in details on what it would take to rotate a
compromised Android app signing key.


More information about the cryptography mailing list