Hacker News·4 min read·hard

Updated GPG Key for Signing Firefox and Thunderbird Releases

C
csmantle
AI Summary

Mozilla has updated its GPG signing subkey for Firefox and Thunderbird after a previous key was inadvertently exposed in a private repository. Users on certain Linux distributions may need to manually remove the old key to ensure continued update functionality.

Today, we moved to a new GPG signing subkey used to sign certain Firefox and Thunderbird artifacts (namely Linux tarballs, RPM packages, checksums files) after an unencrypted copy of the previous subkey was inadvertently committed to a private GitHub repository.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologyscience

Get the full story

Sign up for Headlinne to unlock AI insights, political bias analysis, and your personalized news feed.

Create free account

Already have an account? Sign in