Hacker News new | ask | show | jobs
by potatoz2 1476 days ago
Not entirely. If I MITM your connection to a website that uses a password, I have access until the breach is detected. If I MITM a public/private key log in, I only have access to the session (which can be made arbitrarily short if logging in is painless/automatic).
1 comments

But you can't, because TLS.