On Mon, Mar 27, 2017 at 11:33:07AM +0200, Raphael Hertzog wrote: > I'm not a penetration tester myself. But a good starting point is to > not use "http" at all on connections that you do not trust and also using > tools to ensure that you get the same https certificate that you use to > get over a secure connection.
Does the browser shipped with Debian do this by default? Do you need to install an addon? -- Sean Whitton
signature.asc
Description: PGP signature