Recently, I came across attestation for devices and applications. The definition of attestation is basically having proof, but in the world of devices, it’s about maintaining their integrity.
Alright, let’s break this down logically. Device attestation verifies whether a device is legitimate and uncompromised. Essentially, a way to ensure the hardware and OS haven’t been tampered with. Meanwhile, app attestation is about verifying that an application is genuine and hasn’t been modified or recompiled to introduce malicious behaviour. Both serve security functions, but at different levels.
Anybody want to share their view on this topic? Would love to see different perspectives.