|
|
|
|
|
by Fatnino
991 days ago
|
|
Maybe it's a bug in how curl checks certificates. So a victim behind a hostile AP might be redirected to a malicious site masquerading as a known legit site and when the bad site presents a maliciously crafted bogus certificate curl doesn't notice. |
|