Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It seems that this wouldn't be an issue if they had made the signature a separate file and had it hard coded to check the entire pdf file.


Or if at least it checked the whole file and just treated the exact block of signature bytes within as a set value (like Authenticode).




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: