It’s time to strap on our propeller beanies, because we’re going to talk crypto. The short version is that some SSH handshakes can expose enough information for a third party to obtain the host’s private signing key. That key is the one that confirms you are connecting to the SSH server you think you are, and if the key validation fails, you get a big warning:
This is a companion discussion topic for the original entry at https://hackaday.com/2023/11/17/this-week-in-security-ssh-ftp-and-reptar/