3 ms·
By using a CA they control to generate a fake certificate for Google like they've already "accidentally" done: http://arstechnica.com/security/2013/01/turkish-
by bumblebeard 10y ago
By using a CA they control to generate a fake certificate for Google like they've already "accidentally" done:
http://arstechnica.com/security/2013/01/turkish-government-agency-spoofed-google-certificate-accidentally/ http://arstechnica.com/security/2013/01/turkish-government-a...
- gruez 10y agoWhich they can only pull off once before their CA is distrusted. See: how Chinese government CA was restricted to .cn domains only