Skip to content

Comment on Is PrivDog another Superfish

Comments

Actually it is worse than Superfish.

It does TLS MitM, but it doesn't do any verification at all. It just accepts every self-signed cert and replaces it with a cert signed by it's locally installed root cert.

So it completely disables HTTPS protection. Everyone who has this: get rid of it, this is super-dangerous.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.