Hacker News new | ask | show | jobs
by anandpdoshi 4034 days ago
Doesn't using HTTPS prevent such an injection?
1 comments

I would hope so, unless there is some monkey business with the SSL Certs like the "superfish".

A lot of pages aren't https yet though.

AFAIK Mozilla is trying to make https certificates free for everyone.

Edit: Here's the link: https://letsencrypt.org

Superfish was because the laptop manufacturer bundled adware which added its own root certificate that was broken, they aren't able to add root certificates in this case.
Unless its something they require on their phones as a carrier ¯\_(ツ)_/¯