Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The same server(s) also control the JavaScript code run by the client/browser. They could serve special code (to any one the government wanted to spy on) that returned their password to the server.


That's exactly why LavaBit shut down, looks like they were forced to do that.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: