Hacker News new | past | comments | ask | show | jobs | submit login

ESNI cannot come fast enough.



It's ECH now, Chromium/Google are actively working in it. So soon™

In addition to that we need ODoH and NTS as well. It's pretty clear neither countries or ISPs (not to mention attackers) can keep their grubby fingers out of anything unencrypted. MITM should be visible or impossible.



Yes, we really need that. Glad we have TLS and questionable ambitions show that it doesn't even reach deep enough.

Although the way the web works a web request to domain.xy doesn't mean much anyway but people still believe in it.

Also MITM attacks in IT security should be shunned and I believe the users need to be informed about it when they happen. IT could potentially steal banking information. I believe this to be highly illegal in my country and still a data breach even if an employee wasn't allowed to do the transaction because it was private.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: