Pregunta de entrevista de Chengbao

How to hack a HTTPS connection?

Respuesta de la entrevista

Anónimo

9 abr 2019

1. MITM with fake CA, may lead the user to install/ignore a fake CA file by phishing or social engineering 2. The host name leaked by SNI header in plain text