Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Apps are just as bad. Worse because you can't see if you're transmitting over https or not.


You could argue that apps are worse since they can cert pin and prevent you from mitm'ing your https traffic - you have no clue what data is being sent.

With browsers (for now, Chrome on iOS may start/be cert pinning) you can install a cert and still mitm.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: