Hacker News new | ask | show | jobs
by ATsch 3023 days ago
Because any attacker in the middle can purposefully make the https connection fail, thereby causing all data to be sent in the clear. HSTS and hsts preload makes sure that this can not happen.