Comment by g-b-r
14 hours ago
If you have the TLS session with all the keys, that's signed with the server's key, so it's basically certified by them themselves.
They could only claim that it's been faked by claiming that you stole their TLS private key.
No comments yet
Contribute on Hacker News ↗