Earlier quoted context omitted.
Well, it's not like you can't buy a valid certificate for google.com from a turkish CA that is trusted by all browsers... This has happened before, the only question is how much you're willing to pay.
There's also hardcoded HSTS pining for Google certificates, preventing this.
How does HSTS deal with expired certs?