It looks like you're using an Ad Blocker.
Please white-list or disable AboveTopSecret.com in your ad-blocking tool.
Thank you.
Some features of ATS will be disabled while you continue to use an ad-blocker.
originally posted by: Springer
a reply to: ElectricUniverse
It's FireFox...
...
One somewhat common older development practice was to place the password field on a page delivered by HTTP, with the form submitted to a location protected by HTTPS. This offers little security in practice, however. Pages delivered by HTTP can be readily modified by eavesdroppers, meaning that an attacker could simply choose to submit the password data to a destination of their choosing, instead of the intended HTTPS location.
...
originally posted by: Springer
a reply to: ElectricUniverse
It's FireFox...
originally posted by: 3ncrypt0Rdie
Im not sure why the site dose not use (https) but it would sure be nice to know that there is some form of encryption between me and your servers. Also almost every site on the web now uses it.
originally posted by: projectvxn
ATS doesn't use HTTPS or SSL.
They use basic form encryption for passwords.
seriously, with let's encrypt certificates being free and comments like that, it feels like you're avoiding ssl on purpose.