Hacker News new | ask | show | jobs
by wolf550e 3562 days ago
So banks want to continue not supporting PFS. Banks can afford to log the private ECDHE key of every connection to decrypt all captured packets at a later date.