TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

DigiCert mass-revoking TLS certificates due to domain validation bug

3 点作者 cacois10 个月前

1 comment

ivanr10 个月前
&gt; &quot;Although the chance of a collision is extremely low because the random value has at least 150 bits of entropy, there is still a chance.&quot;<p>I am... speechless. I mean... Um.<p>The last time I checked, no one was able to break 128 bits of security for anything, let alone 150 bits, or for a domain validation of some domain name no one cares about.<p>This is the same attitude that has everyone deploying in-kernel code and arbitrary updates written by companies who can&#x27;t get the basic QA right. The auditors and lawyers get to decide what &quot;security&quot; looks like.<p>It&#x27;s &quot;best to be safe&quot;.