Experimental browser for the Atmosphere
That would be surprising, IIUC exploiting this involves requesting a new certificate for the target domain, using the erroneously cached domain validation. CAA would usually be a separate check on the order, not the account.
Apr 19, 2025, 11:08 PM
{ "uri": "at://did:plc:x2nsupeeo52oznrmplwapppl/app.bsky.feed.post/3ln7avhcttc2n", "cid": "bafyreibbr57jsmxvqc2oecdyy4ufpdlsmzyvs7eojn5vmerzlifd5gd4jy", "value": { "text": "That would be surprising, IIUC exploiting this involves requesting a new certificate for the target domain, using the erroneously cached domain validation. CAA would usually be a separate check on the order, not the account.", "$type": "app.bsky.feed.post", "langs": [ "en" ], "reply": { "root": { "cid": "bafyreihopsgxnc7tm42vfkyqgnzkuj3ru4cpejfs3lislznswnp3zbpn3a", "uri": "at://did:plc:x2nsupeeo52oznrmplwapppl/app.bsky.feed.post/3ln5wkecoax2g" }, "parent": { "cid": "bafyreihgnihusncuye2eyml6oznagpn3lpau5msedve7ipyiprd4ydmkqi", "uri": "at://did:plc:5n7dmsl7pwgd5iagdslzbbgv/app.bsky.feed.post/3ln7apiodz22k" } }, "createdAt": "2025-04-19T23:08:34.313Z" } }