<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Cool trick for detecting a hacked compiler</title><link>http://blogs.msdn.com/dangriff/archive/2006/02/19/535120.aspx</link><description>It's funny - but I seem to remember back in my undergrad days when this classic paper was re-published in this form - http://www.acm.org/classics/sep95/ . Actually, I didn't know anything about the paper directly. Rather, around that time, I remember</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>re: Cool trick for detecting a hacked compiler</title><link>http://blogs.msdn.com/dangriff/archive/2006/02/19/535120.aspx#535192</link><pubDate>Mon, 20 Feb 2006 03:30:51 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:535192</guid><dc:creator>TAG</dc:creator><description>How can you be sure that your EXE file you have just downloaded from &lt;a rel="nofollow" target="_new" href="http://microsoft.com"&gt;http://microsoft.com&lt;/a&gt; is not result of man-in-the-middle attack ? &lt;br&gt;I'm pretty much sure that you was downloading it using HTTP and has started installation by double-clicking on EXE. Digital signatures will not help much as long as all software will not be signed. There is currently no way to restrict user to run digitaly signed binaries only :-(</description></item><item><title>Kernel Mustard  &amp;raquo; Blog Archive   &amp;raquo; dangriff wonders about trusting the compiler</title><link>http://blogs.msdn.com/dangriff/archive/2006/02/19/535120.aspx#535234</link><pubDate>Mon, 20 Feb 2006 06:10:12 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:535234</guid><dc:creator>Kernel Mustard  » Blog Archive   » dangriff wonders about trusting the compiler</dc:creator><description>PingBack from &lt;a rel="nofollow" target="_new" href="http://kernelmustard.com/2006/02/19/dangriff-wonders-about-trusting-the-compiler/"&gt;http://kernelmustard.com/2006/02/19/dangriff-wonders-about-trusting-the-compiler/&lt;/a&gt;</description></item></channel></rss>