chromium / badssl.com

:lock: Memorable site for testing clients against bad SSL configs.
https://badssl.com
Apache License 2.0
2.85k stars 191 forks source link

spoofed-favicon should be http #321

Open AhoyLemon opened 7 years ago

AhoyLemon commented 7 years ago

If I understand the spoofed-favicon, it should be showing an instance where someone is pretending to have a cert by using the green lock as a favicon. So I think the link should be http://spoofed-favicon.badssl.com instead of https://spoofed-favicon.badssl.com

lgarron commented 7 years ago

Hmm, I thought we fixed the link on the front page, but apparently we didn't.