armadito-av
armadito-av copied to clipboard
vulnerability in database update using HTTP protocol
vulnerability disclosed here: http://seclists.org/fulldisclosure/2016/Jun/69
index file download is done using HTTP, which allows MITM attacks. Use of HTTPS is mandatory