Hacker News new | ask | show | jobs
by jessaustin 4237 days ago
The authentication provided by the extant PKI system is much weaker than the encryption provided. Any CA can do anything it wants, and browsers trust lots of them.