logoalt Hacker News

kehvyntoday at 1:54 AM1 replyview on HN

It's always interesting to me that these plaintext sites are flagged as "insecure" and "risky" by modern browsers. I don't have a good solution, but it reminds me of [1]

[1](https://meyerweb.com/eric/thoughts/2018/08/07/securing-sites...)


Replies

vbezhenartoday at 3:58 AM

They are insecure, because your ISP can change website responses and text format doesn't protect from that. So basically browser can't guarantee that you're looking at original web server response.

show 2 replies