Hacker News new | ask | show | jobs
by kevincox 1132 days ago
This doesn't help if your preferred CA does mail-based validation. The attacker can just use the same CA that you do.