You can suggest this:
The server sends its certificate and public key to the client during SSL handshake. How can a client be sure that this public key belongs to the server that sent it, plus the certificate?
Do I understand correctly that the public key of the server was signed with the certificate by the CA? If so, how is it safe to provide a public key for the signature to the certification authority?