Reply to post:

Insecure web still too prevalent: Boffins unveil HSTS wall of shame

Charles 9

"Sometimes that matters. Other times it really doesn't: who cares if it was some anonymous MITM who inserted your comment?"

What if the comment was actually malware? Chinese Cannon inserted malware in unencrypted pages, what's to stop anyone else, and it need not be JavaScript, it could be something that could pass through even NoScript, for all we know.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon