| ▲ | Mozilla revokes Firefox signing key after unencrypted copy lands in GitHub(theregister.com) | |
| 11 points by GaryBluto 13 hours ago | 3 comments | ||
| ▲ | winstonwinston 7 hours ago | parent | next [-] | |
> after an unencrypted copy of the previous subkey was inadvertently committed to a private GitHub repository. Unencrypted signing key. They just don’t care anymore. | ||
| ▲ | shim__ 9 hours ago | parent | prev | next [-] | |
Why wasnt that key in an HSM? | ||
| ▲ | ChrisArchitect 13 hours ago | parent | prev [-] | |
Discussion on source: https://news.ycombinator.com/item?id=49253250 | ||