Hacker News new | ask | show | jobs
by nolist_policy 684 days ago
It was a conscious choice for me as well.

After the Bundeswehr Taurus leak[1] there was a lot of speculation of how the meeting was tapped. One possibility is that they mitm't the guy joining from Singapore with a Certificate from a Chinese CA.

Now Google saw auch a possibility and introduced Certificate Transparenty a few years ago which burns the whole CA if it signs sich a mitm Certificate.

However, Firefox does not check for CT timestamps to this date.

[1] https://en.m.wikipedia.org/wiki/German_Taurus_leak