τέχνη's avatar
τέχνη 2 months ago
Yeah I thought regular web traffic on HTTPS would look innocuous too, but I guess they can inspect how the data is structured and easily see if it belongs to a certain protocol (like Nostr) that way

Replies (5)

frphank's avatar
frphank 2 months ago
How do "they" (who they?) inspect HTTPS data.
Raison d'État's avatar
Raison d'État 2 months ago
There are ~40 governments trusted to sign certificates by major operating systems.. For them, HTTPS is trivial to MitM unless you're pinning certs
Raison d'État's avatar
Raison d'État 2 months ago
Won't the certificate headers still be visible to peeping toms?