Looking at it another way, a certificate issued by a CA is another thing that can be revoked by the authorities to immediately give browser warnings and cause people to think the site has been "hacked" somehow. Browsers rejecting self-signed certificates also makes that route useless.