winstonwinston
7 hours ago
> after an unencrypted copy of the previous subkey was inadvertently committed to a private GitHub repository.
Unencrypted signing key. They just don’t care anymore.
7 hours ago
> after an unencrypted copy of the previous subkey was inadvertently committed to a private GitHub repository.
Unencrypted signing key. They just don’t care anymore.
9 hours ago
Why wasnt that key in an HSM?
13 hours ago
Discussion on source: https://news.ycombinator.com/item?id=49253250