3 ms·
if startssl is compromised (and if start ssl doesn't use ssl, allowing for mitm), then I don't imagine you'd have much luck regardless no matter what practices
by RubyPinch 12y ago
if startssl is compromised (and if start ssl doesn't use ssl, allowing for mitm), then I don't imagine you'd have much luck regardless
no matter what practices startssl uses, once your connection to them is compromised or once they are compromised, then the attacker can change what practices startssl suggests to its users.
- iancarroll 12y ago> then the attacker can change what practices startssl suggests to its users. Or just issue a cert on its own accord...