No-Encryption-Found/EN/Consequence

Aus Siwecos
Version vom 6. Februar 2019, 15:55 Uhr von Siwebot (Diskussion | Beiträge)
(Unterschied) ← Nächstältere Version | Aktuelle Version (Unterschied) | Nächstjüngere Version → (Unterschied)
Wechseln zu: Navigation, Suche

Currently, your website is not protected against using an outdated SSL/TLS standard (protocol downgrade attacks) and against cookie hijacking. This allows an attacker to intercept and manipulate your user's communication. Using this information, an attacker could launch further attacks or spam your users with unwanted advertisements and malicious code. HTTP Strict Transport Security (HSTS) is an excellent feature to strengthen your site and its implementation of TLS by forcing the user agent to use HTTPS.