Invention Grant
- Patent Title: Detection of man-in-the-middle in HTTPS transactions independent of certificate trust chain
-
Application No.: US15872493Application Date: 2018-01-16
-
Publication No.: US10693893B2Publication Date: 2020-06-23
- Inventor: Mauro Marzorati , Yaser K. Doleh , Rosa M. Bolger , Juraj Nyiri
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Scully, Scott, Murphy & Presser, P.C.
- Agent Jeffrey S. LaBaw, Esq.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/08

Abstract:
Various methods for detecting a man-in-the-middle (MITM) during HTTPS communications are disclosed including, in some aspects, establishing a TCP connection for the retrieval of a web page from a domain name using an alternate IP address that is different from the IP address of the target domain where receipt of the target web page in response to a HTTP GET message indicates that a MITM is present, using a domain name as the SNI in a TLS connection and an alternate domain name in a HTTP GET message where receipt of a target web page of the alternate domain name indicates that a MITM is present, and generating an alternate domain name using a domain generation algorithm and using the generated alternate domain name as the SNI in the TLS message where receipt of a certificate for the generated alternate domain name indicates that a MITM is present.
Public/Granted literature
- US20190222588A1 DETECTION OF MAN-IN-THE-MIDDLE IN HTTPS TRANSACTIONS INDEPENDENT OF CERTIFICATE TRUST CHAIN Public/Granted day:2019-07-18
Information query