Get the most out of your Centmin Mod LEMP stack
Become a Member

Security Letsencrypt 14,766 Let's Encrypt SSL Certificates Issued to PayPal Phishing Sites

Discussion in 'All Internet & Web Performance News' started by Jimmy, Mar 25, 2017.

  1. Jimmy

    Jimmy Well-Known Member

    1,788
    390
    83
    Oct 24, 2015
    East Coast USA
    Ratings:
    +990
    Local Time:
    6:23 AM
    14,766 Let's Encrypt SSL Certificates Issued to PayPal Phishing Sites


     
  2. RB1

    RB1 Active Member

    292
    75
    28
    Nov 11, 2016
    California
    Ratings:
    +122
    Local Time:
    3:23 AM
    Nginx 1.21.x
    MariaDB 10.1.x
    An SSL certificate and lock icon in the URL bar only means that the page is being served over SSL and is encrypted, right?

    It doesn't in any way mean that you are safe to enter credit card information or personal details; I think this isn't a huge issue with LetsEncrypt, more of a fundamental flaw with how people perceive HTTPS being safe by blindly trusting it.
     
  3. pamamolf

    pamamolf Premium Member Premium Member

    4,086
    428
    83
    May 31, 2014
    Ratings:
    +834
    Local Time:
    12:23 PM
    Nginx-1.25.x
    MariaDB 10.3.x
    Https means that the communication is encrypted (secure) between you and the server and a third person can't intercept it and stole login info using attacks like MITM :)
     
  4. eva2000

    eva2000 Administrator Staff Member

    54,868
    12,239
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +18,810
    Local Time:
    8:23 PM
    Nginx 1.27.x
    MariaDB 10.x/11.4+
    yeah pretty much expected when something is offered for free and is of use to someone !

    I've seen as Centmin Mod LEMP stack becomes more popular, I've seen more Adult/Porn related sites start using Centmin Mod LEMP stack to power their sites :LOL: Whether that is a good or bad thing, I don't really know yet :whistle: Though there is a worry that Centmin Mod LEMP stack powers not so legal sites. But is it something I'd have control over for offering a free product anyone can download/install ?
     
    Last edited: Mar 25, 2017
  5. Jimmy

    Jimmy Well-Known Member

    1,788
    390
    83
    Oct 24, 2015
    East Coast USA
    Ratings:
    +990
    Local Time:
    6:23 AM
    Yea, you're not going to be able to control who uses Centmin Mod. I wouldn't be too worried about that. It would be like Linus starting to get worried about who uses Linux. If people who run not so legal sites couldn't use Centmin Mod, they'd just use something else.