[deleted]
Many sites reusing Heartbleed-compromised private keys
11–12 of 12 posts
Re: Many sites reusing Heartbleed-compromised private keys
#12Ugh. I think it would be better if revocation covered the public key instead of the serial number. (I'll ignore CRL bandwidth costs and the questionable usefulness of revocations.)
YUP!
I covered that exact subject (http://aminastaneh.net/2014-04-23/misconceptions-about-mitig...), but it didn't catch on in HN.