Changelog (Commits)
- bump: version v4.4.5 (8705a05)
- fix: align historical application results (b087300)
- fix: bound CLI search result buffering (bc17bf4)
Security Verification
SHA-256 Checksums
- Lertaro-Setup.exe (x64):
791711be7acd843be36032626bd2dfff50d4fa1d9a1f758176078b599e2ba133 - Lertaro-Portable.zip (x64):
8a1e1ee808ca4727c35465bc447f7b76da30bc02031f3b5975ff0b32d45c8769 - Lertaro-Setup-arm64.exe (arm64):
2cf953be9d747a0651ebded63cd69864f9b2387f59572a18a3298266cbbe0b48 - Lertaro-Portable-arm64.zip (arm64):
73a82919e344539ab4172627f0b4be441996d341faed4d6f5771fe893219c350
Signature Verification (ECDsa NistP256)
The portable ZIP release is signed using our official release key.
To verify the signature manually using OpenSSL:
# 1. Save the public key shown above to 'public_key.pem'
# 2. Run the following command:
openssl dgst -sha256 -verify public_key.pem -signature Lertaro-Portable.zip.sig Lertaro-Portable.zip
# Expected output: Verified OKTo verify the signature manually in PowerShell (.NET 5.0+):
$zipBytes = [System.IO.File]::ReadAllBytes('Lertaro-Portable.zip')
$sigBytes = [System.IO.File]::ReadAllBytes('Lertaro-Portable.zip.sig')
$ecdsa = [System.Security.Cryptography.ECDsa]::Create()
$pubKeyPem = '-----BEGIN PUBLIC KEY-----
MFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAE117370jTbSPgIwHLntC+Bi3SD6gJ
QfxAySjSpUWa6zy4n0YHVv/ZWXM9zQlF2LTqpQC0iHNdJNH+MKU9UvDMTQ==
-----END PUBLIC KEY-----'
$ecdsa.ImportFromPem($pubKeyPem)
$ecdsa.VerifyData($zipBytes, $sigBytes, [System.Security.Cryptography.HashAlgorithmName]::SHA256, [System.Security.Cryptography.DSASignatureFormat]::Rfc3279DerSequence)
# Expected output: True