Web Hack List

Collected research

ForceHTTPS: Protecting High-Security Web Sites from Network Attacks

Jackson and Barth's WWW2008 proposal, the direct ancestor of HSTS. A site sets a ForceHTTPS cookie over clean TLS and the browser then upgrades HTTP to HTTPS, treats certificate errors as fatal, and refuses mixed content for that host.

Record

Researcher
Collin Jackson and Adam Barth
Published by
archives.iw3c2.org
Format
Whitepaper
Topic
Other

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of Collin Jackson and Adam Barth, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .