Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The expectation of using an SSL connection is that there will be end to end encryption. This is not the case here, and the user should be informed and given the chance to opt-in.


except most people don't know what SSL is, and how it applies - other than that padlock. IN this case, the padlock doesn't prevent nokia from eavesdropping on you. But when asked, a non-technical customer wouldnt know or understand this, and thus opt in, where as if they did understand it they won't opt in.


But we are the technical users. And we just found out a bad thing, that affects non-technical users. It's our responsibility to highlight this.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: