Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
obituary_latte
on Dec 5, 2013
|
parent
|
context
|
favorite
| on:
FSF responds to Microsoft's privacy and encryption...
No, I did not say those things. That aside, if you wanted to, after an audit/review concluded, could you put a backdoor in your software? Since it's closed source, would anyone know about it?
andrewfong
on Dec 5, 2013
|
next
[–]
If there's a deterministic build process, in theory, the auditor would know something was up if the binary differed.
venomsnake
on Dec 5, 2013
|
prev
|
next
[–]
In deterministic build? It will be very hard. I doubt that any audit signs on anything other than specific versions.
throwaway2048
on Dec 5, 2013
|
parent
|
next
[–]
does microsoft use deterministic builds?
riquito
on Dec 5, 2013
|
prev
[–]
There are these things called signed binaries...
danbruc
on Dec 5, 2013
|
parent
[–]
But signing binaries does not prove from which source the binaries have been build, only who did it.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: