Hacker News new | ask | show | jobs
by debugnik 530 days ago
Even if you don't care about privacy, every single page using bare HTTP can have HTML or JS injected into it by a third-party.

Certain ISPs, hotels and airlines do it to their clients, and the script kiddies messing around the poorly firewalled subnet of their college's AP do it too.