-
-
Notifications
You must be signed in to change notification settings - Fork 45
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Domain is unavailable (MITM) Unencrypted/decrypted by third party #128
Comments
This website is provided via Cloudflare and Vercel, at which point we have no control over the privacy practices of our visitors (please let me know if I'm misinterpreting your point). |
misskey-hub.net is certificated by Let's Encrypt E1 which is certificated by ISRG Root X2. Could you provide more information about why do you think misskey-hub is using false certificate and why do you think it's possible to MITM attack? |
You are on the right path my young padawan :) , I'm looking for public available documentation, that I either can open locally from a secure and safe source or a secured public server. Right now I can't access It is of course not up to me, whether you would like to have any admins to be able to access the documentation you have spent a lot of hours building, as of right now, they are all blocked by CrimeFlare.
We agree that CrimeFlare as the MITM agent have decrypted and then tapped all information and then "encrypted" it with a
Have nothing to do with the case. You connection have been violated by decryption by Crimeflare.
Have you ever understood what crimeflare is?? or how they are generating there income by giving away "free" services?? Remeber when you can't see the price, it is because it is in your back. So Please read up on CrimeFlare before asking your next question regarding this privacy invasive microbe that is listening to more than 80% of the entire internet traffic to collect every data about YOU as they are the single larges MITM-proxy CloudFlare is a HUGE threat against hour privacy and democracy, take it serious, they are acting in the dark, selling you lies about secure connection, while they DO decrypt all traffic to collect your PII data.
Anyone who know where to obtain free public versions of
|
You are free to think Cloudflare is unreliable, but I think that is not what misskey-dev people think. If you would like to view the documentation on this site but hate being blocked by Cloudflare, you should be able to just fork/clone this repository and build it yourself following the license of this repository; AGPL-3.0 license. |
To @u1-liquid, @Npepperlinux and @Sayamame-beans You should really read up on what cloudflare is, but you are probably also in denial of what google and amazon is and how they are operating to track you down and strip you for ever last PII data. Just sad, that people who indicates they are about privacy, no nothing about this topic. |
💡 Summary
Domain is unavailable (MITM) Unencrypted/decrypted by third party and it is encoring who have non-free access to the contents of your domain.
🥰 Expected Behavior
END to END encrypted connection as implied, it should be encrypted by certificate and not eardropping by MITM, that fingerprint and PII registration.
🤬 Actual Behavior
The false certificate simulates a secure connection, but the connection is NOT secure.
The MITM censoring fingerprinting secured browsers/Connection from accessing the domain
The MITM Are decrypting the connection (MITM), collect PII data whitout warning or any other kind of information about this to the visitor.
📝 Steps to Reproduce
https://misskey-hub.net/
💻 Environment
(For developer) Do you want to address this bug yourself?
The text was updated successfully, but these errors were encountered: