Skip to content

Comment on What do I tell the average Internet user about this?

Comments

If I'm missing something, please tell me -- but the whole scheme relies on obtaining a fake SSL certificate. This type of attack has always been possible with a fake SSL cert. I don't see how this little blue box changes anything.

It seems to me that one of the primary problems is that law enforcement agencies don't need a warrant or subpoena for the SSL certificate. Where's the accountability?

Agreed, but again, what's changed? This problem has always existed, and it's getting some airtime now because someone made a little blue box to that makes it a bit easier to configure.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.