Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

True. I am not aware of any web services POSTing sensitive data over the public Internet that don't use HTTPS. If your service is sending sensitive data over HTTP without TLS, I feel the problem is bigger than a potential long-lived DNS resolution.


Valid point! One would hope that does not happen.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: