3 ms·
Relatively few companies can sign TLS certificates, and you have the security of the domain name as well. In order for an attacker to steal a TLS session they n
by NohatCoder 7y ago
Relatively few companies can sign TLS certificates, and you have the security of the domain name as well. In order for an attacker to steal a TLS session they need to compromise both the certificate system and the dns lookup.
- gruez 7y agoIt also helps that the CAs have an incentive not to get caught (CA death penalty for misissuance)