Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
orangecat
on March 24, 2010
|
parent
|
context
|
favorite
| on:
Law Enforcement Appliance Subverts SSL
That, and it demonstrates how bad the default SSL trust model is. If the gmail.com certificate came from Thawte yesterday and comes from the Department of Defense or CNNIC today, your browser will happily accept it without warning.
Consider applying for YC's Spring batch! Applications are open till Feb 11.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: