Ethervoid's comments

Ethervoid | 14 years ago | on: How Not to write a "REST" API

"Everything in the HTTPS message is encrypted, including the headers, and the request/response load. With the exception of the possible CCA cryptographic attack described in limitations section below, the attacker can only know the fact that a connection is taking place between the two parties, already known to him, the domain name and IP addresses."
page 1