I've thought about it, but then you get the "Turtles All the Way Down" problem. How can you be sure the "known good" copy really IS "known good" if the intruders are savvy enough to not only replace the copy but also its hash as well (or worse, if it's a well-resourced enemy like a State, successfully pull off a Preimage Attack and submit a bad copy with the same hash)?

