Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
undefined | Better HN
0 points
lol768
7y ago
0 comments
Share
It seems vulnerable to an active MitM - if the attacker is in a position to serve malicious JS that exfiltrates the data from window.location.hash.
I think the scheme is fairly robust against passive interception though.
0 comments
default
newest
oldest
woah
7y ago
Client side encryption keeps honest companies honest but no more than that
j
/
k
navigate · click thread line to collapse