how the nsa is breaking SSL traffic thanks to its private database of session keyx

some say that some people in some certificate firms - the specific leak is in the US but never exclude other possibilities - give the NSA a copy of the certificates

if this would be true than that would blow up any trust that one may have in these firms

if you have the key, you don't need to attack the protocol but you just open the door (why make it difficult)


