Hacker News new | ask | show | jobs
by symtos 3023 days ago
The ISP in question is in Turkey, so it should probably be noted that the Turkish government has a root cert trusted by both Mozilla and Microsoft.

https://ccadb-public.secure.force.com/mozilla/IncludedCACert...

https://social.technet.microsoft.com/wiki/contents/articles/...

1 comments

Pretty sure that such a root cert would be fairly quickly yanked if they got caught using it for MITM attacks. That would cause a lot of trouble for the primary users of such certs. Such attacks are best done with some relatively obscure and unimportant compromised certificate authority.