• @[email protected]
    link
    fedilink
    English
    435 days ago

    Not for s second do I believe this was a accidental oversight.

    I am sure they had very good reasons, all alligned with their actual interests with no thought spared to even consider consequences for small fish users.

    • @[email protected]
      link
      fedilink
      English
      275 days ago

      i just can’t think of any. like the article says, i fully expected the app to send data to china. but even if you are maliciously spying on users, why would you send the stolen data on unsecured channels? so that everyone in the path takes advantage of the data your wanted to steal?

      • sunzu2
        link
        fedilink
        75 days ago

        Sounds plain sloppy lol

        Badest AI, rookie opsec

      • fmstrat
        link
        fedilink
        English
        14 days ago

        If forced to relocate servers to a US partner,it leaves an attack vector.

    • @[email protected]
      link
      fedilink
      English
      55 days ago

      Yep I’m with you.

      It’s so easy to use https with secure encryption. It’s the default. You have to go out of your way to use s symmetric key or to even allow http without SSL in xcode or Android studio.