The government CA could just issue a new certificate for let’s say Google, force your ISP to return a wrong IP when you ask your ISPs dns server what the address of Google is and then return a fake Google page instead or forward traffic to Google on your behalf and read all data. And since your browser trusts the new fake Google certificate from the government you won’t get any https error or warning.
It’s not, it’s just that with enough mainstream media coverage about scary internet stories normies are slowly waking up to what the internet is and how you should conduct yourself on it. Of course any terminally online person could have told you that 20 years ago but those are not most people. Hell even if you do know better good luck convincing your family, I know I tried for years with negligible results other than one of them now using a password manager.