logoalt Hacker News

827ayesterday at 3:08 PM8 repliesview on HN

Thousands of systems, from Google to script kiddies to OpenAI to nigerian call scammers to cybersecurity firms, actively watch the certificate transparency logs for exactly this reason. Yawn.


Replies

H8crilAyesterday at 3:12 PM

For those that never looked at the CT logs: https://crt.sh/?q=ycombinator.com

(the site may occasionally fail to load)

show 2 replies
tech234ayesterday at 9:38 PM

The Web Archive also uses the Certificate Transparency logs, some websites that aren't linked anywhere end up in the Wayback Machine this way: https://archive.org/details/certificate-transparency?tab=abo...

ekr____yesterday at 3:51 PM

With that said, given that (1) pre-certificates in the log are big and (2) lifetimes are shortening and so there will be a lot of duplicates, it seems like it would be good for someone to make a feed that was just new domain names.

show 3 replies
1vuio0pswjnm7yesterday at 4:40 PM

"... for exacty this reason."

Needs clarification. What reason

show 2 replies
kccqzyyesterday at 8:03 PM

Certificate transparency log is a Google project. They don’t need to scrape it. They host all the data. It’s one of those projects where Google hosts it because it thinks it genuinely improves the internet, by reducing certificate authority abuse.

pavel_lishinyesterday at 3:17 PM

What's the yawn for?

show 3 replies
raldiyesterday at 4:15 PM

What reason?

show 1 reply
irishcoffeeyesterday at 3:20 PM

[flagged]

show 4 replies