commit: 6728099b2357995eea7b29edb9e6252f7f9976cb
parent 045eeb36700c783095f9cf6bcad380d6da470081
Author: Haelwenn (lanodan) Monnier <contact@hacktivis.me>
Date: Sun, 11 Aug 2024 10:47:45 +0200
RejectedCertificatesAutorities.md: Reject ZeroSSL (COMODO)
Diffstat:
1 file changed, 3 insertions(+), 0 deletions(-)
diff --git a/RejectedCAs.md b/RejectedCAs.md
@@ -3,3 +3,6 @@
- Appears to still support non-standard verifications
- <https://www.globalsign.com/en/custom-ca-private-pki> seems to allow man-in-the-middle ("SSL/TLS Inspection/Decryption") which should only be done with a special non-trusted certificate
- Cross-signs other CAs, which while interesting for allowing new CA, ultimately means having to trust all the cross-signed CAs
+
+## ZeroSSL
+- This is a sockpuppet of COMODO which has been involved in numerous controversies: <https://en.wikipedia.org/wiki/Comodo_Cybersecurity>