How to hack time, with C2PA

(da.vidbuchanan.co.uk)

20 points | by Retr0id 7 hours ago ago

3 comments

  • kaszanka an hour ago

    Only tangentially related, but knowing that remote attestation and co. will only ever get... "better" fills me with impotent rage like almost nothing else. https://www.lafkon.net/tc/ (2004) was so very prescient.

  • bawolff 3 hours ago

    > C2PA allows for arbitrary "exclusions". These are byte ranges within the file which are excluded from signature calculations

    Glad to see we learned from the mistakes of SAML.

    • hedora 2 hours ago

      If not this, then how would you propose updating the signed file to contain the signature?

      /s