3 ms·
It's not just that Komodia used the same root cert. It goes a bit deeper than that: https://blog.filippo.io/komodia-superfish-ssl-validation-is-broken/ https://
by ffumarola 12y ago
It's not just that Komodia used the same root cert. It goes a bit deeper than that: https://blog.filippo.io/komodia-superfish-ssl-validation-is-broken/ https://blog.filippo.io/komodia-superfish-ssl-validation-is-...
- murbard2 12y agoI was wondering if they even did the validation properly on the Internet facing side. Turns out they don't, wow.
- patcheudor 12y agoAlso covered on HN first: https://news.ycombinator.com/item?id=9078536 https://news.ycombinator.com/item?id=9078536