Hacker News new | ask | show | jobs
by gcp 3373 days ago
I don't understand how EV vs DV factors into certificate pinning here.
1 comments

If we had a DV cert and pinned the DV root then the barrier for an attacker is a lot lower. They just need to jack our DNS and get their own automated DV cert issued quick.