What is a shame is that we are pentesters/ ethical hackers and what not. Our IP Addresses are logged over a http website.
It is a worse case scenario & a shame for all of us. I mean come-on those wanted to - Took down CIA / FBI websites. How are we so sure our privacy will never be compromised?
Not that I have anything to hide, but still. It is a bare minimum one can do.
Just a thought!
I do agree with an https login. Personally it stresses me out whenever I seen a sign up form on a website where I have to enter any PII or email address unencrypted...