Technology
This is the official technology community of Lemmy.ml for all news related to creation and use of technology, and to facilitate civil, meaningful discussion around it.
Ask in DM before posting product reviews or ads. All such posts otherwise are subject to removal.
Rules:
1: All Lemmy rules apply
2: Do not post low effort posts
3: NEVER post naziped*gore stuff
4: Always post article URLs or their archived version URLs as sources, NOT screenshots. Help the blind users.
5: personal rants of Big Tech CEOs like Elon Musk are unwelcome (does not include posts about their companies affecting wide range of people)
6: no advertisement posts unless verified as legitimate and non-exploitative/non-consumerist
7: crypto related posts, unless essential, are disallowed
view the rest of the comments
Well, your comment just shows your tech illiteracy. https is useless when you don't need to deal with sensitive data.
It's definitely not the case that it's useless. A MITM can embed malware into the page it returns if you aren't being served over HTTPS. It's not just about snooping on sensitive data going one or both ways, it's about being sure that what you're receiving is from who you actually think you're receiving it from.
Yeah, it's also easy enough to set up that a coding website not doing it is almost embarrassing.
Indeed. See my edit on the parent comment--I noticed that the website provides commands to the user to run, which makes it ripe for MITM attacks: if the user is copying-and-pasting commands to run into their shell, those need to be served over HTTPS.