官术网_书友最值得收藏!

Confidentiality

Without HTTPS, your connection could be hijacked via a man in the middle attack. The address in the browser may tell you that it is the domain you expect to have loaded, but in reality, it could be bad guy in the middle.

Let's start by defining different scenarios:

Normally when you connect to a website using HTTP, the conversation is in plain text. In general, the conversation contains nothing sensitive. But a bad person could snoop on your traffic and use the information they find to do bad things, as shown in the following image:

This is amplified when you use public Wi-Fi. These networks are great for connecting to the internet for free, but poor for personal security.

Once the eavesdropping bad guy identifies your session, they could intercept the conversation and route you to their server. Now any information you share with the desired site is sent to the bad guy's server instead, as shown in the following image:

While somewhat sophisticated, it happens more times than you might think.

Let's change the scenario so that all those involved are using HTTPS. Now all the communication is encrypted. The only thing the bad guy can see is what domain(s) you visit, not even the URLs on those domains, as shown in the following image:

The connection between the client and server cannot be hijacked. If a bad actor tries to hijack the session, both the client and server know there is a problem and the conversation ends.

主站蜘蛛池模板: 安达市| 葫芦岛市| 高要市| 获嘉县| 饶河县| 石阡县| 惠安县| 崇州市| 体育| 大庆市| 龙泉市| 英德市| 杂多县| 克什克腾旗| 津南区| 来安县| 德阳市| 辰溪县| 广汉市| 红安县| 金沙县| 犍为县| 四会市| 太仆寺旗| 宣化县| 南汇区| 建宁县| 东阳市| 昔阳县| 东乡| 水城县| 徐闻县| 宜君县| 邵阳市| 乌拉特中旗| 江孜县| 泰和县| 中西区| 甘德县| 呼伦贝尔市| 平远县|