Hacksplaining
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance
Sign Up
Log In
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance Sign Up Log In

SSL Stripping

Marlinspike noticed that many supposedly secure sites (including banking websites!) at the time presented content over insecure HTTP connections, upgrading to HTTPS only when the user logged in and provided the credentials.

Description
Lessons
Glossary
Terms and Conditions
Privacy Policy

© 2026 Hacksplaining Inc. All rights reserved. Questions? Email us at support@hacksplaining.com