Hacker News new | ask | show | jobs
by jeroenhd 1317 days ago
This is why certificate transparency is so important. They can sign fraudulent certificates and MitM websites for a short while, but the CA will probably be permanently blacklisted if any browser in the wild encounters these certificates.

Turkey can eliminate their trust based companies one by one if they deem it necessary, but for a government seemingly trying to focus on export the distrust would probably hurt more than it would yield. See DigiNotar and WoSign/StartCom.