Remix.run Logo
Mozilla revokes Firefox signing key after unencrypted copy lands in GitHub(theregister.com)
11 points by GaryBluto 13 hours ago | 3 comments
winstonwinston 7 hours ago | parent | next [-]

> after an unencrypted copy of the previous subkey was inadvertently committed to a private GitHub repository.

Unencrypted signing key. They just don’t care anymore.

shim__ 9 hours ago | parent | prev | next [-]

Why wasnt that key in an HSM?

ChrisArchitect 13 hours ago | parent | prev [-]

Discussion on source: https://news.ycombinator.com/item?id=49253250