Comment on The gpg.fail aftermath: On responsible disclosure, GPG, and the state of security in 2026
waltersf@bookwyr.me 1 week agoLexi Groves is quoting Fedora’s own mailing list irt social engineering. Both Fedora’s instructions are wrong, and the method to properly verify ISO, that to be brutal, should have been outdated decades ago, is “dangerously wrong.” It’s a nice gibe.