3 ms·
Having it show the exact same page to the end user is the entire point. There are plenty of proxies that hijack your session to show you their own stuff (usuall
by Argure 12y ago
Having it show the exact same page to the end user is the entire point. There are plenty of proxies that hijack your session to show you their own stuff (usually ads), and what I wanted was explicitly not that. The only things the proxy will change in terms of content are URL rewrites so that you won't accidentally leave the proxy.
Of course it's entirely possible for whoever runs a proxy to sniff all of your data; that's unavoidable. There's a big warning by default on the index page for this exact reason. I'm not overly concerned about phishing though. If it happens, it happens, whether or not I publish proxy software.
And really, even if I did have the proxy modify the DOM to generate huge warnings, what's the point? Anyone who wants to use this as a phishing tool can just as easily remove it. That, and the average phishing victim usually doesn't look at warnings, but will click past them.
There are already better phishing methods in place., and phishing is going to be a problem regardless of this software's existence and regardless of what it does.