you are viewing a single comment's thread
view the rest of the comments
[–] 4 points 2 years ago

No one can remove all risk but the security threshold between intercepting an initial connection and compromising a CA are vastly different. The latter would be much more difficult to pull off which is why we use them. Sounds like this EU rule is going to put a ceiling on that though.

  • source
  • parent