|
|
|
|
|
by jaywalk
1991 days ago
|
|
Except that without SSL, some JavaScript could be injected to grab the password completely outside of the RSA encryption. So assuming there is already a MITM who wants the password, all you'd be doing is making his attack slightly more complicated. |
|