Message137424
| Author |
skrah |
| Recipients |
Arfrever, alexis, barry, eric.araujo, loewis, skrah, tarek, techtonik |
| Date |
2011年06月01日.07:30:14 |
| SpamBayes Score |
0.0025393602 |
| Marked as misclassified |
No |
| Message-id |
<1306913415.13.0.571167549516.issue12226@psf.upfronthosting.co.za> |
| In-reply-to |
| Content |
> Distutils doesn't validate PyPI server certificate, so this change
> doesn't prevent from MITM attacks, but at least it makes package
> submissions over wireless channels and public networks safer.
Is that so? It's been a while, but I think e.g. ettercap is a highly
automated tool for MITM attacks that isn't very hard to use. |
|