4 ms·
> If someone does that you’ve already been pwned Then why use encryption at all when your threat model for encrypted communication can't handle a malicious act
by jabiko 1y ago
> If someone does that you’ve already been pwned
Then why use encryption at all when your threat model for encrypted communication can't handle a malicious actor on the network?
- mjmas 1y agoBecause there are various things in HTML and JS that require https. (Though getting the browser to just assume http to local domains is secure like it already does for http://localhost http://localhost would solve that)