Hacker News new | ask | show | jobs
by noobquestion81 1988 days ago
Disagree. Theres a big difference between passive and active collection attacks. If the stakes are a site-wide password breach, it can make sense to eliminate passive attacks specifically.

Remember, sometimes breaches are caused because someone at the POP left HTTP parameter logging enabled.