Hacker News new | ask | show | jobs
by zokier 4724 days ago
> then you can remove the other 90 from your trusted list and make my (the attackers') job 10x harder

or possibly infinitely easier if the users become accustomed to accept ssl errors due lacking root certs.