Github's Total Security Facepalm https://donatstudios.com/GithubsTotalSecurityFacepalm …
-
-
Instead of complaining about a dependency being broken, try to understand why the original maintainer broke down.
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
And keep in mind that HTTPS only protects the transport, not the content. Don’t trust a download location, no matter how secure the transport is. The only thing you can trust is a signature of the actual content.
Show this thread -
I lost a domain that was used to distribute binaries. The website was only accessible over HTTPS with highly secure settings. But today, the new owner of the domain can use it to distribute malware. HTTPS is totally useless to prevent this. Only signature verification can.
Show this thread
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.