@briankrebs The article says that TLS was involved, but isn't it supposed to prevent that? Just because they manipulate DNS that doesn't mean they have valid private keys of the domains involved? Or have they compromised a CA as well?