7 ms·
Is this is meaningfully different than the risk to any engineer working in security on ~central infrastructure? > even if you don't have the keys you may still
by flippingheck 10d ago
Is this is meaningfully different than the risk to any engineer working in security on ~central infrastructure?
> even if you don't have the keys you may still control the implementation
The sorts of places that care about remote attestation also care about insider risk.