The Cloudflare conspiracy theory
(media.conspiracies.win)
You're viewing a single comment thread. View all comments, or full comment thread.
Comments (13)
sorted by:
SSL/TLS encryption in HTTPS is broken by desing by existence of so-called "trusted" CA list browser account as "trusted".
Self-signed certificate in no way worse than signed by some "trusted" CA in terms of encryption. It is even better - when such self-signed certificate changes for whatever reason browser warn you about that. So you are aware that certificate changed, and you could take apropriate action, depending on the reason - either owner of site renewed certificate, or he didn't and there is some malicious activity. With "trusted" CA certificates you, suddenly will not get such warning if new certificate signed by some "trusted" CA. So, any letter agency could eaily force "trusted" CA under their jurisdiction to issue perfectly valid certificate for any site and do MitM as long as they want. And no user will ever notice that.
Infrastructure of "trusted" CA should be exterminated.