suppose I do
$.post('https://somesite.com', {username : "somename", password : "somepassword"}, function(){
//do something
});
notice that the site's url is prefixed with https...
Does this imply that jquery will use HTTPS connection to relay that username and password info?
IE. will this prevent some hacker from intercepting that message and obtain the username and password data? IE. is this just as secure as logging in manually with a form in a https enabled site?
If not, what should I do to make this post transmission just as secure as someone manually logging into a site using a login form...(Ie. make it unable to be intercepted by some hacker)
Yes the login is fine, but this doesn't guarantee the session is secure. You probably haven't read OWASP a9, and your application is probably vulnerable.
If you love us? You can donate to us via Paypal or buy me a coffee so we can maintain and grow! Thank you!
Donate Us With