Conversation
Notices
-
Embed this notice
Andrew Ayer (agwa@follow.agwa.name)'s status on Thursday, 02-Nov-2023 23:38:12 JST Andrew Ayer The EU is considering a very bad law called eIDAS that would:
- Force browsers to accept government certificate authorities
- Ban additional security checks on certificates (such as Certificate Transparency) unless the EU agrees to them
This would undo 10 years of improvements to encryption on the Web and create an environment very favorable to MitM attacks.
If you're an EU citizen, consider writing to the MEP responsible for the eIDAS file, Romana JERKOVIĆ (https://www.europarl.europa.eu/meps/en/112747/ROMANA_JERKOVIC/home), to voice your concern.
Learn more at https://last-chance-for-eidas.org/-
Embed this notice
Sexy Moon (moon@shitposter.club)'s status on Friday, 03-Nov-2023 04:11:20 JST Sexy Moon @agwa true but all CAs create an environment favorable to mitm attacks In conversation permalink -
Embed this notice
Andrew Ayer (agwa@follow.agwa.name)'s status on Friday, 03-Nov-2023 05:14:42 JST Andrew Ayer @Moon Certificate Transparency allows attacks to be detected, and then browsers can distrust the CA. This won't be possible in the EU if eIDAS passes. In conversation permalink Sexy Moon likes this.
-
Embed this notice