This successful proof of concept shows that the certificate validation performed by browsers can be subverted and malicious attackers might be able to monitor or tamper with data sent to secure websites. Banking and e-commerce sites are particularly at risk because of the high value of the information secured with HTTPS on those sites. With a rogue CA certificate, attackers would be able to execute practically undetectable phishing attacks against such sites.
...designed to take advantage of emerging HTML5 features (including Audio elements), intentionally breaking compatibility with older browser versions and substandard contemporaries such as Internet Explorer. Good for Macintosh. Best in Safari 4, Chrome 4, FireFox 3.5, and Opera 10 in that order.
Note: This is not an endorsement of any of the listed programs.