ParentFull threadu801e·The spoofing site wouldn't/shouldn't be able to pass the browser validation of the TLS server side certificate.View on HN