Using Gmail (with Tor) is a bad idea

Fabian Keil freebsd-listen at fabiankeil.de
Tue Sep 19 16:39:49 UTC 2006


Anothony Georgeo <anogeorgeo at yahoo.com> wrote:

> --- Fabian Keil <freebsd-listen at fabiankeil.de> wrote:
> 
> > Firefox/1.5.0.7 honours an unencrypted redirect
> > as response for a https connection request.
> > You don't get a warning, but of course if you look
> > for it, you can see that the connection is 
> > unencrypted.
> 
> Thanks for the heads up.  

You're welcome.
 
> I may be wise to also report this behaviour to the
> Firefox forums or bugzilla.  Maybe the devs. will make
> FF provide a warning or an about:config setting to
> prevent https to http redirects.

I don't consider this a Firefox problem and if you
don't use broken sites the redirect isn't an issue.

Also I don't have the feeling that privacy is a
high priority for the Firefox team anyway, just have
a look a the default configuration.

Feel free to report this as Firefox bug, but as this
doesn't affect me and as I could easily use Privoxy to disable
redirects for untrusted sites, I'm not going to do anything
about it my self.

Fabian
-- 
http://www.fabiankeil.de/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
URL: <http://lists.torproject.org/pipermail/tor-talk/attachments/20060919/2d986db7/attachment.pgp>


More information about the tor-talk mailing list