Paste.sh - client-side encrypted pastebin
paste.sh
paste.sh
i.e. If you could get the client to redirect to http://paste.sh it would send the full auth cookie in the (now unencrypted) headers. (Man-in-the-middle can then use the cookie.)
Edit: For anyone checking, the cookie is only set upon the first edit.
This article does not seem to be fully geared towards crypto that is supposed to happen in the client and then never touch the server. In this case all the code is served over HTTPS and the browser does in fact have a CSPRNG (window.crypto) now. Still the article raises a lot of good points.
Okay, there are still issues with the JS environment but this does eliminate one of the worst issues IMO
That's the worst problem with JS crypto, but we haven't enumerated all of the problems on this thread, nor does my (old) post on our website do so either.
The fragment is never sent to the server.