Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If you hold the theory that the traffic is being intercepted and the parties have compromised the TLS keys: The test for complicity is obvious: failing to rotate out the TLS keys, failure to HSTS, and failure to switch to EDH ciphersuites everywhere.

These are all moderately 'cheap' steps if you believe you're being compromised in this manner.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: