IE 12 to Support HSTS Encryption Protocol

  • 8 April 2014
  • 3 replies
  • 18 views

Userlevel 7
Badge +52
Microsoft confirmed today it will support HTTPS Strict Transport Protocol (HSTS) in Internet Explorer 12, bringing its browser in line with other major vendors in its support of the protocol.
 
Browsers supporting HSTS force any sessions sent over HTTP to be sent instead over HTTPS, encrypting communication to and from a website.
 
According to OWASP, HSTS protects users from a number of threats, in particular man-in-the-middle attacks by not only forcing encrypted sessions, but also stopping attackers who use invalid digital certificates. The protocol denies users the ability to override invalid certificate messages. HSTS also protects users from HTTPS websites that also may include HTTP links or serve content unencrypted.
IE 12 is expected to be released this year; IE 11 was introduced in October 2013 and is the default browser in Windows 8.1.
 
Full Article

3 replies

Userlevel 7
Badge +56
That's great to hear!
 
Daniel 😉
Userlevel 7
Good news! :D
I look forward to IE12, because recently somehow I've started even liking IE11 and slowly I'm coming back to it in my daily use.
 
Mike
Userlevel 7
Badge +56
I wonder if other browsers will follow suit?

Reply