Is there any evidence of this?
Is there any evidence of this?
They have never claimed they send fake ssl packets to drop the stream but they have done it to me and the uk governments stance is kind of against modern tls greater than 1.2 which fixes the drop stream packet bug [4].
There is plenty more detail about what they are doing out there, search snoopers charter and GCHQ snowden to see what they have been doing and are now trying to make legal.
[1] https://www.zdnet.com/article/u-k-spy-agencies-plan-to-insta... [2] https://www.theguardian.com/world/2013/sep/05/nsa-gchq-encry... [3] https://www.libertyhumanrights.org.uk/human-rights/privacy/s... [4] https://www.ncsc.gov.uk/blog-post/tls-13-better-individuals-...
I was told they have intermediate keys for certificate authorities(probably done legally with the ca permission), generate a new key signed with the real intermediate. This would be detectable as the cert fingerprint would be different from the legit legit one, while SSH checks for this by default SSL does not.
I have tried to detect the above and as far as I can tell they are not doing it, but I believe the people I heard more than I believe my ability to detect it.