Nope, they do it primarily out of necessity, because of the mounting pressure on the previously used CAs. The MitM capability is just a nice side bonus.
>So I empathize with the sarcasm, but best not to offer MitM proponents (whether in Russia or the U.S. or elsewhere!) an argument that could be used against your viewpoint.
If browsers truly cared about user security they would've provided reasonable conditions for supporting national CAs:
- Limit its authority only to respective national domain zones.
- Mandate use of Certificate Transparency handled by an independent third party to prevent MitM.
But this debacle only shows that western-controlled (especially financial) systems can be and will be used as a pressure tool, so any large sovereign nation will not trust them as they would in the past. And the taken actions only contribute to further fragmentation of the Internet across national and block borders.