{"type":"rich","version":"1.0","author_name":"npub17ty4mumkv43w8wtt0xsz2jypck0gvw0j8xrcg6tpea25z2nh7meqf4qgyd","author_url":"https://nostr.ae/npub17ty4mumkv43w8wtt0xsz2jypck0gvw0j8xrcg6tpea25z2nh7meqf4qgyd","provider_name":"njump","provider_url":"https://nostr.ae","html":"📅 Original date posted:2012-11-26\n📝 Original message:\u003e That's expected behaviour - except it's mainly be manipulated by *users*, not\n\u003e viruses (which can just as easily manipulate whatever custom cert store we\n\u003e use).\n\nThe point of using signed invoices as virus protection isn't to change\nwhat the user sees on the infected host. The point is the invoice can\nbe relayed to a second device that isn't also compromised which then\nindependently renders a payment confirmation screen (like your mobile\nphone), and it has an identifier in it that's useful to people, like\nbitmit.net instead of an address.\n\nIf it was just showing you a Bitcoin address, that doesn't mean\nanything to you so a virus on your PC could wait until you want to\nmake a large payment somewhere and swap out the address in use. You'd\nnever know it was the wrong address and you'd happily confirm on your\nsecond device.\n\nFor this to work, the seller has to be able to predict what certs you\nhave in all your devices. If it's up to the OS vendors then it's hard\nto know and in practice all that'll happen is somebody will compile a\nlist of CAs that are \"known good\" (ie, present in all deployed mobile\nand desktop OS') and that'll be the minimal cert list. No different to\nif it was hard-coded in the spec.\n\n\u003e If I don't trust Joe's certs, I don't want Bitcoin overriding that no\n\u003e matter who Joe is or what connections he has.\n\nNothing says your wallet software can't provide cert management UI\nlike browsers do.\n\nIn practice I have a feeling that cert management UI is one of the\nleast used parts of a browser. I've used browsers for years and the\nonly time I've ever had to go into those screens was to manage\ninstallation/removal of self signed certs used by various\norganizations. I never manually revoked a root authority. When it was\nnecessary due to breaches (Comodo/DigiNotar) the browser makers\nrevoked them for me."}
