Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

That's roughly the purpose of HSTS, but you need to have visited the site at least once first (or in the case of popular sites, HSTS status of a site is shipped with the browser.)


People who are encountering this for the first time might want to look at

http://www.thoughtcrime.org/software/sslstrip/

for some of the motivation!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: