Hacker News new | ask | show | jobs
by wslh 4129 days ago
But this problem is not only about CA certs. If the application sits in the same computer it can intercept the SSL libs used in the application (wininet for IE, and the Firefox and Chrome used libs) to watch and modify SSL connections.

This can be done without any proxy or certificate installation.