August 4Aug 4 Cloudflare's alleged Browser Developer Program Apparently there is a Cloudflare Browser Developer Program mentioned by Moonchild: CloudFlare: summary and status. And here is the official announcement: Announcing the Cloudflare Browser Developer Program. But clicking on their form Cloudflare Browser Development Program Application leads to that: Quote Cloudflare Browser Development Program Application Das Formular "Cloudflare Browser Development Program Application" nimmt keine Antworten mehr an. Kontaktieren Sie den Eigentümer des Formulars, wenn Sie der Meinung sind, dass hier ein Fehler vorliegt. Translated into English: The "Cloudflare Browser Development Program Application" form is no longer accepting responses. Please contact the form owner if you believe there is an error here. Cloudflare and its developers are nothing more than propagandists and charlatans. This service holds a monopoly, which it exploits ruthlessly, and should be regulated by law under threat of very heavy financial penalties. Cheers, AstroSkipper Edited August 4Aug 4 by AstroSkipper Update of content
August 22Aug 22 I see this forum now compromised by them.I stupid did not noticed and entered my password, so they have it now, even if I change it, the new password they will have it too.I stop use this forum for now and if new posts will be here it likely will be not me.
Sunday at 03:51 AM5 days On 8/22/2026 at 10:32 AM, feodor2 said:I see this forum now compromised by them.I stupid did not noticed and entered my password, so they have it now, even if I change it, the new password they will have it too.I stop use this forum for now and if new posts will be here it likely will be not me.I don't think so. HTTPS: is end-to-end encrypted. Only MSFN's server can see what you entered for your password. Middlemen like Cloudflare can't eavesdrop.That said, Cloudflare is causing lots of issues for users of older browsers, and has been even before MSFN's latest update.
Monday at 11:57 PM3 days Great, now I see its gone , I have changed password and shall watch carefully.On 8/30/2026 at 3:51 AM, Mathwiz said:I don't think so. HTTPS: is end-to-end encrypted. Only MSFN's server can see what you entered for your password. Middlemen like Cloudflare can't eavesdrop.Sure they do, they decrypt data and substitute the certificate, you pay attention, now there is one if the forum return back to them the certificate will become another.
Wednesday at 03:42 AM2 days On 8/31/2026 at 6:57 PM, feodor2 said:they decrypt data and substitute the certificateThat's called a "man-in-the-middle" attack. Companies sometimes do that with their workers' PCs. It's also how ProxHTTPSProxy works. But it can't be pulled off unless your browser trusts the MITM's certificate authority (CA).You are implicitly accusing a browser-trusted CA of issuing a false MSFN certificate to CF, so that CF can pretend to be MSFN and carry out the attack. Any CA caught issuing false certificates, even to CF, would immediately be distrusted by both Google and Mozilla, which would pretty much put them out of business.OK, in theory I guess there could be some grand conspiracy between CF, Google, and Mozilla to steal MSFN users' passwords, but it seems pretty unlikely to me. But if you're still not convinced, we can just ask @xper to settle the matter:Which CA issued MSFN's current TLS certificate?What is the certificate's fingerprint?If his answers match the certificate your browser is seeing, then your browser is seeing MSFN's actual certificate, and you are safe. If not, then you are right and have my sincere apologies.
Wednesday at 08:24 AM2 days https://secure.ssl.com/public_hcm/scan?domain_name=msfn.org&key=ffaea00d4d37cbfb4d7b9a3d56a0ff7a6e81356b0b051c281349349fb89a3d47[root@afrodita ~]$ openssl s_client -connect msfn.org:443 -servername msfn.org </dev/null 2>/dev/null | openssl x509 -noout -fingerprint -sha256SHA256 Fingerprint=91:54:43:48:AB:77:6A:37:E6:98:B5:29:CF:29:D9:38:CF:79:98:B4:55:81:68:FE:12:22:66:5F:05:97:AD:7F
Create an account or sign in to comment