4 ms·
Isn't certificate transparency opt-in, so any trusted CA could be a potential attack route.
by CommanderData 9mo ago
Isn't certificate transparency opt-in, so any trusted CA could be a potential attack route.
- JoshTriplett 9mo agoBrowsers now require it to consider a certificate valid. Firefox, Chrome, and Safari all require a certificate to include proof of being logged in CT logs.