4 ms·
SSL is just half the solution when there is enough attack surface available through JavaScript. Users should have the ability to encrypt data within the browser
by omk 8y ago
SSL is just half the solution when there is enough attack surface available through JavaScript. Users should have the ability to encrypt data within the browser (before any JS kicks in) only to be read by owners of a trusted domain.
Keygen was the way to go; there's some hope with FIDO.