@ChrisCoolyard@fuffologa@omgsidewalks Should you still be charged a “cleaning fee” despite doing all those? The word “clean up after yourself” literally got clean inside it.
@yooyouyes@YMegaSnorlax Don’t shift the goalpost. Is this a harassment or an opinion? If it is opinion, are people not allowed to have opinion and publicly voice them out now?
@Dogeater1612@levelsio Just because people fall for scams like this doesn’t mean public WiFi is bad. User need to be vigilant. This scenario is present regardless if you are using public WiFi - say you typed https://t.co/fQr8s3jcj2 instead and didn’t notice. Don’t you think that’s your problem?
@Dogeater1612@levelsio People should care and if they don’t it’s on them. If we go this route the entire internet is insecure - if a user is going to run any random powershell script on the Internet when told to do so, they will screw up regardless if it is a public wifi or not.
@Dogeater1612@levelsio You can’t have a valid TLS cert for https://t.co/lbzu8dafJr, period. If you do use a self signed cert, the browser is gonna just show you a big red warning telling you it is unsafe and you shouldn’t proceed. End of story.
@Dogeater1612@levelsio No you seriously don’t understand it. Yes your malicious server points to your hosted page when the browser requests https://t.co/3Uc80K3sNe. Next the browser requests for a valid TLS certificate for https://t.co/3Uc80K3sNe(HTTPS remember?) - which you are unable to produce.
@BrunoZP@levelsio Even though the response looks LLM generated, I am glad we are on the same page at least for encryption.
“Your email wasn’t hacked because of an unsafe wifi. HTTPS is fully encrypted.” We are discussing why public WiFi is safe due to HTTPS - stay on the topic.
@BrunoZP@levelsio And which protocol do you think that AJAX POST is transferred using? HTTP? (Spoiler: modern browser blocks XHR/fetch to HTTP on HTTPS)