>>(Don't assume that HTTPS is keeping you safe.)
>Why?
because https depends on certificate authorities and CAs depend on coercible companies which depend on governments from not molesting them.
The existence of QUANTUM INSERT and FOXACID attacks show CA-based authentication is weak (either due to their keys being compromised or coerced). DigitNotar also got pwned.
Strong authentication is one of the unrivaled advantages to onion addresses in tor.
The CIA also advocates to not solely rely on TLS for transport encryption: https://news.ycombinator.com/item?id=24426818