Oh wow. TL;DR They found out that, if you can do mitm on a TLS connection with valid certificates, you can impersonate the TLS secured service! I don't get from the article what the novelty is.
this post was submitted on 04 Jan 2026
6 points (87.5% liked)
blueteamsec
623 readers
10 users here now
For [Blue|Purple] Teams in Cyber Defence - covering discovery, detection, response, threat intelligence, malware, offensive tradecraft and tooling, deception, reverse engineering etc.
founded 2 years ago
MODERATORS