Post
Topic
Board Service Announcements
Re: [ANN] ChipMixer.com - Bitcoin mixer / Bitcoin tumbler - mixing reinvented
by
mocacinno
on 26/10/2018, 12:36:51 UTC
Looks like the certificate expired yesterday.

https://www.ssllabs.com/ssltest/analyze.html?d=chipmixer.com&latest

Don’t use the clear net site as you could get a man-in-the middle attack.

I think the tor one should be fine though if you want to keep using their service.

@tryninja, do ssl certificates “run out” I mean you have to update them every so often to keep stuff secure but do they run out? If not it’s probably just a corrupted profile somewhere.

Chipmixer is using a "Let's Encrypt" certificate. Last time i used them, those certificates were only valid for 3 months (IIRC). Since the private key is generated on chipmixer's side and never sent to letsencrypt's servers, the private key isn't known to anybody but chipmixer... This should be enough to avoid a MITM attack.

The reason certificates expire has something to do with the fact that the revocation status of an expired certificate is no longer published. This means that an expired certificate can be revoked without the surfer's knowledge.

In Chipmixer's case, i can only assume it's probably just the task of renewing the certificate that hasn't been automated.