lbry.com/content
Udit Patel b9f57de1bd Mixed content weakens HTTPS fix7 (#617)
Mixed content weakens HTTPS
Requesting subresources using the insecure HTTP protocol weakens the security of the entire page, as these requests are vulnerable to man-in-the-middle attacks, where an attacker eavesdrops on a network connection and views or modifies the communication between two parties. Using these resources, an attacker can often take complete control over the page, not just the compromised resource.

Although many browsers report mixed content warnings to the user, by the time this happens, it is too late: the insecure requests have already been performed and the security of the page is compromised. This scenario is, unfortunately, quite common on the web, which is why browsers can't just block all mixed requests without restricting the functionality of many sites.
2018-06-10 12:45:07 -07:00
..
bio Update mark-beamer.md 2018-05-24 14:02:30 -04:00
bounty add Ruby progress 2018-06-08 19:14:48 -04:00
credit-reports Updated total amount credits in summary 2018-04-26 22:15:51 +02:00
faq remove message 2018-06-08 17:38:54 -04:00
jobs add location functionality to job postings and mark remote 2018-05-30 11:16:20 -04:00
news Mixed content weakens HTTPS fix7 (#617) 2018-06-10 12:45:07 -07:00
press Added date to Pillar PR 2016-09-14 10:48:10 -04:00
press-kit.md Update press-kit.md 2018-03-06 12:01:41 +01:00