Toot

Written by AJCxZ0 on 2024-08-10 at 22:01

Of all the problems with email campaign HTTP redirects, one of the most annoying is the prevalence of insecure links, i.e. http:// I think this may account for 98.3% of all HTTP traffic outside the great firewall of China.

From: verizon-notification@ecrm-mail.verizon.com

Subject: Protecting your privacy is important to us.

Date: Sat, 10 Aug 2024 04:44:04 -0400

To view the current Privacy Policy visit verizon.com/fiosprivacypolicy at any time or click on the button below.

Of course that is not linked to the URL shown, but a long referral link with tags and tracking, but at least that link and the apparent destination is secure, i.e. https://

GET https:// verizon .com/fiosprivacypolicy

HTTP/1.1 301 Moved Permanently

Location: http:// verizon .com/fiosprivacypolicy

In the footer they don't even try:

Verizon is dedicated to protecting your privacy. Please read our Privacy Policy.

where "Privacy Policy" links to a referral to an insecure link, i.e. http:// (and not the same page as the previous "Privacy Policy").

HTML Programmers never die.

HTML Programmers never learn.

[#]Verizon #PrivacyPolicy #NotImportantToUs #HTTPS #HTTP #HTMLProgrammers #InsecureByDesign

=> More informations about this toot | View the thread | More toots from AJCxZ0@infosec.exchange

Mentions

Tags

=> View verizon tag | View privacypolicy tag | View notimportanttous tag | View https tag | View http tag | View htmlprogrammers tag | View insecurebydesign tag

Proxy Information
Original URL
gemini://mastogem.picasoft.net/toot/112939976071359522
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
222.783334 milliseconds
Gemini-to-HTML Time
1.070314 milliseconds

This content has been proxied by September (3851b).