Comment on Attackers exploit fundamental flaw in the web's security to steal $2 million in cryptocurrency by Anonymous

In reply to Anonymous.

An EV cert requires more than just a response from a server answering from the domain name on the requested certificate. An EV means “Extra Validation” steps, such as checking with the existing CA, phone calls to the Kakao company’s registered phone number, written approvals, and traceable payments. The forged certificate request for would not have been approved by a representative of Kakao, and no reputable CA would have signed it.

