There has been a lot of news recently about certificates being falsely issued (due to the issuing authority having poor system security!). Apparently the targeted users were mostly Iranians, but it's not hard to imagine this happening to anyone.
My browser comes pre-loaded with hundreds of certificates. Is there any way to guard against rogue certificates?
Note: I realize this is more of a "security" issue than a "cryptography" issue, so please feel free to argue against these kinds of questions in the comments if you feel it's out of bounds for this forum.