Get a Pentest and security assessment of your IT network.

News

Firefox 4: HTTP Strict Transport Security (force HTTPS)

This article is about a new HTTPS header: Strict-Transport-Security, which force a website to be fetched through HTTPS. This feature will be part of Firefox 4.0. HSTS, specified in an IETF draft, allows sites to specify when they wish to be accessed only over https. These behaviors can be exploited to run a man-in-the-middle attack on a non-encrypted version of the website. To avoid this, you may want to force your websites to be visited through https.”]

Source: https://hacks.mozilla.org/2010/08/firefox-4-http-strict-transport-security-force-https/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2