Hacker News new | ask | show | jobs
by edeirme 3448 days ago
If a website employs the use of HSTS all traffic will be redirected to HTTPS, rendering the support for HTTP redundant.
1 comments

Hmm, if you can control the plaintext network isn't there an NTP attack to reverse time and use old compromisable certificates or move it forward past hsts max age?