Content Deep Dive
Sidejack Prevention Phase 2: SSL Everywhere
Blog post from GitHub
Post Details
Company
Date Published
Author
Risk Olson
Word Count
163
Language
English
Hacker News Points
-
Summary
Risk Olson announced the implementation of SSL for all website interactions, ensuring that every page hit, regardless of user login status, is securely transmitted over HTTPS with secure cookies. This follows an earlier update securing private repositories and user dashboards against sidejacking. Despite the progress, some resources served from external sites still trigger SSL warnings, which the team plans to address promptly. The initiative marks a significant stride in their ongoing efforts to enhance security, with further fixes for insecure assets in comments and other areas expected in the coming days.