If you still trust WoSign's CA, time to nuke it from orbit. Apparently anyone can get a cert for GitHub now.https://twitter.com/pedromelo/status/770151127316885504 …
-
-
Replying to @marcan42
And remember, StartCom cross-signs WoSign, so you need to detrust both. Note that StartCom now uses Chinese infrastructure.
3 replies 32 retweets 18 likes
Replying to @Taiki__San @thegrugq
As far as I'm concerned they've mostly been superseded by @letsencrypt
8:28 AM - 31 Aug 2016
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.