5 ms·
Gov't can easily MITM HTTPS connections.
by Warp__ 10y ago
Gov't can easily MITM HTTPS connections.
- martin-adams 10y agoI did not know this. How do they do that?
- Warp__ 10y agohttp://security.stackexchange.com/questions/143387/is-there-such-a-thing-as-a-black-box-that-decrypts-internet-traffic http://security.stackexchange.com/questions/143387/is-there-... That's pretty clear. It does depend of what level/technology is used in the Encryption, but broadly, against nation state actors with full virtual and physical hardware access, you are to put it bluntly, stuffed.
- redcalx 10y agoTrue. Anyone know if this new IP law allows the gov to do this? I.e. if they tried to prosecute and it came to light that the logs were obtained using a MITM attack, would the evidence be nullified?
- Warp__ 10y agoI don't know. I imagine that MITM on a large scale is par for the course for GCHQ.
- redcalx 10y agoSure, but can data obtained by that be used in a court of law. I /think/ those are two different things (but not sure).
- tehmaco 10y agoIt would probably come under the "Equipment Interference" section, which legalises hacking of devices.