logoalt Hacker News

JoshTriplettlast Thursday at 4:25 PM1 replyview on HN

> Why worry about E2E encryption, in theory just need a cert issued from a vast array of CAs or intermediates.

Certificate Transparency thankfully means this is a tool a government could only use once if at all, and then they've burned an entire CA.


Replies

CommanderDatalast Thursday at 5:27 PM

Isn't certificate transparency opt-in, so any trusted CA could be a potential attack route.

show 1 reply