Hacker News new | ask | show | jobs
by egberts1 697 days ago
This is why we should be doing dual-server-client TLS certificate exchange before stuffing damaging info over Internet. But, alas, nooooooooo.
3 comments

Any more post-relevant insights we should congratulate you for, or is it just this one?
How would mutual TLS have helped here?
Mutual TLS dutifully breaks if there is a transparent HTTPS proxy like SSLbump or Squid.
You can do certificate pinning.