logoalt Hacker News

tptacektoday at 1:18 AM1 replyview on HN

Neither DNSSEC nor the WebPKI are defenses against phishing. But phishing (registrar ATO more generally) is the dominant vector through which DNS spoofing occurs, and DNSSEC solely addresses DNSSEC spoofing.


Replies

gzreadtoday at 4:17 AM

Do you agree that we don't need HTTPS because phishing is the most common HTTP attack, not MITM?

show 1 reply