Hacker News new | ask | show | jobs
by joshtalon 5229 days ago
They can do public-key pinning like Chrome does (for example, they embed the "mail.google.com" public key into Chrome itself, and verify that it's the certificate you're TLS'ing to.