Cheating Chinese certificate authorities, caught by Certificate Transparency, will get the death penalty

Those rogue CAs richly deserved it.

On the other hand, Symantec (and previously COMODO) got a mere slap on the wrist for offenses just as serious, because they are too big to fail. If Chrome were to reject Symantex certs, about 1/3 to half of all websites would stop working and people would switch to Firefox or Edge. This puts them (and other browser makers) in a bind and you can just feel the frustration from the likes of Ryan Sleevi at Google.

Unless the browser makers agree to coordinated bans along with some way to notify webmasters so they replace their certs ahead of time, scumbag companies like Symantec will continue to abuse their certificate-issuing with near impunity.

5 Likes