Hacker News new | ask | show | jobs
by apowell 5930 days ago
If I'm missing something, please tell me -- but the whole scheme relies on obtaining a fake SSL certificate. This type of attack has always been possible with a fake SSL cert. I don't see how this little blue box changes anything.
1 comments

It seems to me that one of the primary problems is that law enforcement agencies don't need a warrant or subpoena for the SSL certificate. Where's the accountability?
Agreed, but again, what's changed? This problem has always existed, and it's getting some airtime now because someone made a little blue box to that makes it a bit easier to configure.