My Chrome just complained from PayPal's security, similarly to this issue:
Google Chrome "Your connection to website is encrypted with obsolete cryptography"
The identity is verified, but it complains the cryptography is obsolete.
Says it uses RC4_128 with SHA1.
Should I be worried? Should PayPal be ashamed? Should Chrome stop scaring me?
UPDATE: Chrome was v 42 and after the update to v 43 the message stopped and now the certificate shows AES_256_CBC -- which, according to some of the comments, makes me believe that choice of using "RC4_128 with SHA1" was made by Chrome 42, not PayPal.
Bad Google: making people think the server is in the wrong, while it was your browser making the decision...