SharkCagey / SharkCage

1 stars 3 forks source link

Check signatures / hashes of all processes about to be created #63

Closed DonatJR closed 6 years ago

DonatJR commented 6 years ago

Either Service should check manager binary and Manager all other binaries or Service should check all binaries and not start the Manager at all if signature / hash does not check out. For the second option the Service will need to process the config file as well, so it might be easier to go with the first option

DonatJR commented 6 years ago

some information regarding this: https://stackoverflow.com/questions/24060009/checking-digital-signature-on-exe https://stackoverflow.com/questions/1072540/winverifytrust-to-check-for-a-specific-signature