2 ms·
In theory, someone could have MITM'd the page and replaced the site's publishable key with their own.
by pc 13y ago
In theory, someone could have MITM'd the page and replaced the site's publishable key with their own.
- btown 13y agoOr they could have replaced the entire Stripe JS with custom JS that presents a similar-looking dialog that submits the CC data to a third party (possibly also submitting it to Stripe to avoid detection).