We need more eyeballs and brains on Certificate Transparency. Google is quietly signing up CAs based on false info: http://blog.okturtles.com/2014/09/the-trouble-with-certificate-transparency/ …
-
-
Replying to @taoeffect
@taoeffect protip: if you want people to take you seriously you need a way more NPOV1 reply 0 retweets 1 like -
Replying to @taoeffect
@taoeffect the same attacks you allege affect CT also affect “blockchain” based systems. But are either attacks practical?1 reply 0 retweets 1 like -
Replying to @taoeffect
@taoeffect a MitM who controls what you see on the Internet can construct a false reality in either case1 reply 0 retweets 1 like -
Replying to @bascule
@bascule Yes, but it is different in CT than it is in blockchains. See discussion in claim #2: http://blog.okturtles.com/2014/09/the-trouble-with-certificate-transparency/ …3 replies 0 retweets 0 likes
Replying to @taoeffect
@taoeffect you’re nitpicking minute details in the CT specification. Not that that’s a bad thing…
1:30 PM - 24 Sep 2014
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.