Hacker News new | ask | show | jobs
by yjftsjthsd-h 2902 days ago
Notice of course that that little stunt resulted in them being removed from everybody's trust stores. And it's not like you can just get away with it these days, since certificates are all publicly logged now.
2 comments

> since certificates are all publicly logged now.

Only some of them are. All EV and some DV get published.

Didn't realize that; apparently all Symantec certs require it, and I misunderstood that as industry-wide.
Not everybody's. There is whole China where the certs remain installed.
And how is that accomplished? I doubt this will happen on private PCs.