• masterofn001@lemmy.ca
    link
    fedilink
    English
    arrow-up
    2
    ·
    11 hours ago

    Lol. So this API for ‘security’ and ‘integrity’ basically has a built in malware trojan:

    Avoid caching integrity verdicts Caching integrity verdicts increases the risk of proxying, which is an attack where a bad actor reuses a verdict from a good device for abusive purposes in another environment. Instead of caching responses, you can make a standard API request to get a verdict on demand.