Recent paper clarifying just what ISPs can infer from your browsing. HTTPS isn’t the answer; defeated by DNS. https://www.teamupturn.com/reports/2016/what-isps-can-see …
@FiloSottile @seesharp @codinghorror I agree there are difficulties but it should be possible to mitigate, minimize info leakage.
-
-
@RichFelker@seesharp@codinghorror disagree, I always found “minimized” info leakage to only survive until the next paper. -
@RichFelker@seesharp@codinghorror both in side channels (like crypto timing leaks) and in behavior and traffic analysis -
@FiloSottile@RichFelker@seesharp@codinghorror ISPs can see to what servers are you making TCP/80/443 conns, which itself leaks info
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.