Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's injecting the malicious script into the source of http pages. With httpS, this is not possible unless you also change the root certificate of the computer.


Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: