resync mitm due to verifypeer=0 #15

StormTide opened this Issue Jan 3, 2014 · 2 comments


None yet

3 participants


Verifypeer = 0 here disables any protections granted by TLS. The response data can be manipulated by a mitm attacker.

fredrikt commented Jan 5, 2014

Some discussion on Twitter about this :

klali commented Jan 7, 2014

Thank you for noticing this, dropping that right away.


@klali klali added a commit that closed this issue Jan 7, 2014
@klali klali always verify ssl peer
fixes #15
@klali klali closed this in 2424d15 Jan 7, 2014
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment