Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> your connection could be MITM'd

MITM isn't a risk, if I understand this statement in the undeadly.org announcement:

   The authentication of the server host key prevents exploitation
   by a man-in-the-middle, so this information leak is restricted
   to connections to malicious or compromised servers.


Unless it's your first connection to a legit uncompromised server, yes? (AWS instance, etc)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: