Earlier quoted context omitted.
As long as the victims are checking it and know what to look for!
Chrom(e/ium) and Safari don't trust certificates that are not in public logs [0]. [0] https://en.wikipedia.org/wiki/Certificate_Transparency#Manda...
With Let's Encrypt we made a lot of people's certificate management a "fire and forget" thing, which is exactly what we hoped to do, but if they completely forget about it, it may be that there will be lots of targets against whom nobody would notice certificate misissuance.