Failed file hash check does not necessarily indicate tampering, expert explains
ProofLedger founder explains that a failed timestamp verification only indicates a file's hash doesn't match an anchored record, not necessarily that content was altered. Common tools like gzip, tar, and Git can modify file bytes without changing content, such as by adding timestamps or adjusting line endings. The service hashes raw bytes without interpreting file content, meaning identical content can produce different hashes across systems. A successful verification provides strong evidence of unchanged bytes, but a failed check requires users to ensure their file generation process is reproducible.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in