2 comments

[ 2.7 ms ] story [ 14.4 ms ] thread
The ultimate sidejacking opportunity, other unencrypted data notwithstanding. Sites with a proper SSL implementation seem more attractive each day.
If you combine BGP hijacking with your own CA (e.g. CNNIC), you can even hijack SSL sites.