[luau] dirty cookie trick(?)

Vince Hoang luau at ml.altern8.net
Mon Jul 7 10:41:01 PDT 2003


On Mon, Jul 07, 2003 at 09:35:21AM -1000, R. Scott Belford wrote:
> I have noticed that on a few web sites, Delta Air Lines in
> particular, I am prompted to accept the ssl certificate from
> ads.doubleclick.net. I presume that this is a sneaky way to
> get me to accept a very permanent cookie, but perhaps it is a
> benign request. I just don't see why an ad would require ssl.
> Any thoughts on this tactic?

Mixed HTTP/HTTPS pages complain pop up warnings on most browsers.
Having SSL can reduce those warnings for ads or web bugs on SSL
sites.

-Vince



More information about the LUAU mailing list