The updated rootkit will be uploaded and installed to your computer kernel automatically upon closure of the deal.

I posted this to /c/news where it was promptly removed of course

For good reasons of course

  • frongt@lemmy.zip
    link
    fedilink
    arrow-up
    0
    ·
    7 days ago

    Well that’s not strictly true. If you run Windows, you already have a root certificate installed on your computer from the government of Saudi Arabia (sha1 fingerprint 8351509B7DF8CFE87BAE62AEB9B03A52F4E62C79).

    The purposes don’t include code signing, so they probably can’t use it directly for malware. But it includes server identification, so they could possibly intercept your traffic and resume https with their own cert (which hopefully your browser would flag, but isn’t guaranteed). That would allow them to serve malware.

    An easy way to get access to your traffic is bgp hijacking: https://en.wikipedia.org/wiki/BGP_hijacking