MicrosoftDocs / azure-docs

Open source documentation of Microsoft Azure
https://docs.microsoft.com/azure
Creative Commons Attribution 4.0 International
10.24k stars 21.41k forks source link

Threat Modeling Tool Binary not signed #75074

Open dheine777 opened 3 years ago

dheine777 commented 3 years ago

The Microsoft Threat Modeling tool installation binary is not signed. How can we know it has not been tampered with? I hesitate to install unsigned binaries. Seems like Microsoft should be leading the way in security, especially for a tool used by security professionals!


Document Details

Do not edit this section. It is required for docs.microsoft.com ➟ GitHub issue linking.

JamesTran-MSFT commented 3 years ago

@dheine777 Thanks for your feedback! I've assigned this issue to the author who will investigate and update as appropriate.