logoalt Hacker News

Polizeiposauneyesterday at 6:48 PM2 repliesview on HN

a .tesla.com certificate might well enable more shenanigans than a .pool.ntp.org cert.


Replies

jan_tilde_zoneyesterday at 7:19 PM

Hope there are no sensitive *.tesla.com cookies out there...

show 1 reply
sippingabonedryyesterday at 6:53 PM

That points to a glaring hole in the modern-day automated web PKI, not Tesla's dangling DNS record.

Hell, they issue certificates to IP addresses now. For cloud systems, ownership of an IP could be a few hours.

This has almost certainly been deemed an acceptable risk.

show 2 replies