LW4 0 Posted ... If a nation state actor were to force COMODO CA to relinquish their SSL private keys (or if COMODO was hacked again), would an attacker be able to decrypt our .ovpn downloads over TLS? And later use keys found in the .ovpn files to decrypt our VPN traffic?@airvpn Would it be possible to get an onion address for airvpn.org? An onion address might help mitigate the above attack, right? Quote Share this post Link to post
nick75 25 Posted ... Hello, Thanks to perfect forward secrecy (PFS) previous or current VPN sessions can't be decrypted. Only hacking into a server or a user's device would help an attacker (only for current sessions) — which is what most do already. Quote Share this post Link to post