3 ms·
giving it a domain-name and serving with https encryption on it would improve all kinds of security. then again, it feels wonderfully apt that it is on some ra
by TomasEkeli 2y ago
giving it a domain-name and serving with https encryption on it would improve all kinds of security.
then again, it feels wonderfully apt that it is on some random ip
- Etheryte 2y agoSecurity of what? You're not inputting any data of your own into the site.
- sedatk 2y agoHypothetically speaking, you can still be MitM'ed.
- Etheryte 2y agoAnd then what, serve me fake Disco Elysium dialogs? What's the threat model?
- sedatk 2y agoEither pick one of the recent JavaScript sandbox escape CVEs on a vulnerable browser, or redirect to your phishing page as to your liking. Again, hypothetical and very unlikely, but the risks are there.