The Register® — Biting the hand that feeds IT

Feeds
Boffin

This kind of thing has been going on for a while

Two years ago, when I was on Blackberry, I stayed at a cheap hotel, owned by a well-known chain, in Southampton. I connected my Blackberry to the free wifi offering and it instantly popped up a whole-screen critical security warning that that SSL fingerprint of the Blackberry server didn't match the certificate RIM had issued and warned me that all my traffic was at risk of interception if I allowed the connection.

I don't know if a regular browser would have picked up this MitM attack as I don't know who the signer of the bogus certificate was. I really think Mozilla and Chrome need plugins to detect dodgy/changed certificates.