Hacker News new | ask | show | jobs
by dasrecht 5913 days ago
yes this sould not be the core of the problem. its important to know _who_ owns the debatable CA.

This gives a great Mitm Vector if i'ts a malicious CA

1 comments

Is it possible to do a web crawl scan of https and SSL certs and find out which certificates have this questionable one as their root?