logoalt Hacker News

Galanweyesterday at 7:56 PM2 repliesview on HN

Because there is a quadrillion trusted CAs in every device you might use. A good chunk of these CAs have been compromised at one point or another, and rogue certificates are sold in the dark market. Also any goverment can coerce a domiciled CA to issue certs for their needs.


Replies

hvb2yesterday at 8:13 PM

That is a wild claim. I can't imagine that being correct given how that's been abused in the past

https://www.eff.org/deeplinks/2011/08/iranian-man-middle-att...

show 2 replies
technionyesterday at 10:20 PM

If you go down this path you argue desktop browsing https is broken, which i dont think is a serious argument.

show 2 replies