Comment on Doxx/Darkflare: DarkFlare TCPoCDN (TCP over CDN)parentComments−duskwuff1yI don’t get why headers and requests need to be spoofed if all traffic is over https?Because the traffic is to a CDN endpoint (like Cloudflare) which expects it to be a HTTP message.−tomsonj1yit can still be an https message, who cares what the path, query string, or headers look like? that is all encrypted
Comments
Because the traffic is to a CDN endpoint (like Cloudflare) which expects it to be a HTTP message.
it can still be an https message, who cares what the path, query string, or headers look like? that is all encrypted