Not sure what point you're trying to make here since the sophistication of the recent attack was in the construction of a trusted identity to sign the vulnerable releases.
I'm so gonna try this out... in a maximum security isolated VM
> Have we learned anything from last week or forgot already?