Hacker News new | ask | show | jobs
by nicky0 1181 days ago
If someone wanted to trick HN users into trusting a phoney key, one way to do that would be to post the phoney fingerprint on HN claiming it to be the real one.
3 comments

I mean, yes, but you'd also have to have a way to actually MITM the person you are targeting via HN comment, before anyone pointed out it was wrong. It'd be much easier to just use the MITM you already have and not raise the suspicion of posting in a comment.
Don't overthink this.
And if someone would actually fall for this, they deserve to be fired, and/or never allowed anywhere near anything related to computer security. :)
And within a few seconds someone will have called this out in a reply
Assuming the person doesn’t have some back door access to HN as well.
Or they don't simply wait a while and edit it when it's not under high scrutiny.
You can only edit for a certain amount of time