Live data from Hacker News

Many sites reusing Heartbleed-compromised private keys

zdnet.com

11–12 of 12 posts

Re: Many sites reusing Heartbleed-compromised private keys

#12
post #7

Ugh. I think it would be better if revocation covered the public key instead of the serial number. (I'll ignore CRL bandwidth costs and the questionable usefulness of revocations.)

YUP! I covered that exact subject (http://aminastaneh.net/2014-04-23/misconceptions-about-mitig...), but it didn't catch on in HN.
Post reply on HN