Hacker News·4 min read·hard
Updated GPG Key for Signing Firefox and Thunderbird Releases
C
csmantle✦AI Summary
Mozilla has updated its GPG signing subkey for Firefox and Thunderbird after a previous key was inadvertently exposed in a private repository. Users on certain Linux distributions may need to manually remove the old key to ensure continued update functionality.
Today, we moved to a new GPG signing subkey used to sign certain Firefox and Thunderbird artifacts (namely Linux tarballs, RPM packages, checksums files) after an unencrypted copy of the previous subkey was inadvertently committed to a private GitHub repository.
technologyscience
✦
Get the full story
Sign up for Headlinne to unlock AI insights, political bias analysis, and your personalized news feed.
Create free accountAlready have an account? Sign in