“Http Shaming” is a new blog on Tumblr that names and criticizes websites and apps that don’t use SSL encryption. The blog was created just last week by software engineer Tony Webster.
“Http Shaming” already includes several popular websites and applications that do not properly implement or use encryption at all, such as Tripit, Scribd and Meetup, putting users' personal information at risk when using unsecured connections (e.g. public Wi-Fi).
In these cases, hackers may use special “sniffing” tools to monitor unencrypted traffic, intercepting sensitive information and using it to compromise users’ online accounts.
The creator of the page hopes that the public exposure of unsafe websites will convince companies to take additional measures to secure user data.

