Thats why we now have certificate transparency reports and CA-records.
Sure not perfect, but at least with a compliant CA it wont just happen in the dark.
At some point you have to trust someone.
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments