Hacker News new | past | comments | ask | show | jobs | submit login

Certificate pinning helps remedy this, to an extent. Anyway, it's not just Cloudflare that can do this.




With Letsencrypt etc, isn't it still true that everyone who can BGP hijack traffic can get a TLS cert for that domain?

https://community.letsencrypt.org/t/using-bgp-to-acquire-bog...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: