-
Notifications
You must be signed in to change notification settings - Fork 22
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
No check of jar signing #1
Comments
I need more details. For example I have an application |
Not exactly. There is application with several JARs within it. In every jar there are several invocations for a checking validity of a license. And during every call it will cool to make mentioned calls to prevent any possibility to hack an application:
I'm asking because I've already did that on my previous project. Without such checking it's comparably easy to hack an application by decompling, removing checks for a license and then packing back. And more over: if library for license checking is not selfsigned - it's sufficient to hack just this particular library. |
Maybe someone propose a solution for this feature, via PR. |
It will be cool if framework can:
Right now it's pretty easy to hack application which use this library...
The text was updated successfully, but these errors were encountered: