You could always inspect the changes to see what they would have put in it, so IMO they won't make that mistake because it will make them accountable of any malware, rootkit or whatever. In fact it would be much better if they actually did just that.
Power management, mobile and firmware developer on Linux. Security developer at Aurora. Ex-biologist. mjg59 on Twitter. Content here should not be interpreted as the opinion of my employer. Also on Mastodon.
Re: checking the signed binary
Date: 2012-05-31 03:52 pm (UTC)