logoalt Hacker News

gslepakyesterday at 3:54 PM1 replyview on HN

Using old compromised certificates is a legitimate MITM attack vector.


Replies

dmitrygryesterday at 3:54 PM

Which would make sense if they were valid for 10 years and somebody forgot about them. Not when they’re valid for, what is it now, 40 days?

show 2 replies