112 karma · joined June 10, 2024
https://davidzech.com
The source code provided is for reference to help with disassembly.
Edit link: https://security.apple.com/documentation/private-cloud-compu...
That's the whole point of the transparency log. Anything published, and thus to be trusted by client devices, is publicly inspectable.
It is so much more than that, but you are entitled to your own opinion.
I think we have different understandings of what the transparency log is utilized for.
The log is used effectively as an append-only hash set of trusted software hashes a PCC node is allowed to run, accomplished using Merkle Trees. The client device (iPhone) uses the log to determine if the software measurements from an attestation should be rejected or not.
https://security.apple.com/documentation/private-cloud-compu...
The log is publicly accessible and append-only, so such an event would not go un-noticed. Not sure what a non-transparent log is.