logoalt Hacker News

kachapopopowlast Thursday at 1:21 PM1 replyview on HN

they would just compromise wherever your tls is terminated (if not E2E which most of the time it is not), but also just taking a memory dump of your vm / hardware to grab the tls keys and being able to decrypt most future traffic and past is also an option.


Replies

coliveiralast Thursday at 1:38 PM

It's funny that people still have any expectation of privacy when using a vm hosted at a place like AWS or Azure... They're giving any and every last bit you have, if the right people ask.

show 3 replies