Facebook insecure by design

Michael Thomas mike at mtcc.com
Sun Oct 2 15:38:36 UTC 2011

William Allen Simpson wrote:
> In accord with the recent thread, "facebook spying on us?"
> We should also worry about other spying on us.  Without
> some sort of rudimentary security, all that personally
> identifiable information is exposed on our ISP networks,
> over WiFi, etc.
> Facebook claims to be able to run over TLS connections.
> Not so much (see attached picture).
> This wasn't an "app", this is the simple default content of a
> page accessed after a Google search.

I'm not sure why lack of TLS is considered to be problem with Facebook.
The man in the middle is the other side of the connection, tls or otherwise.


More information about the NANOG mailing list