HTTPS Somewhere

ID: dapfmaempgppekcneleonmpoebhkfaol

Could be malicious

Supported Languages

🇺🇸US English

Extension Info & Metadata

Status
Removed
Version
0.0.1
Size
0.27 MB
Rating
4.5/5
Reviews
13
Users
9,000
Type
Extension
Updated
Sep 8, 2014
Category
Lifestyle Social
Price
Free
Featured
No
Visibility
Listed
Mature
No
By Google
No
Trusted
No

Publisher Contextual Analysis

Author
AfterRainView Profile
Total Extensions
1
Active
0
Obsolete
1
Listed
1
Unlisted
0
Total Users
9,000

You reached today's free scan limit (3/3 unique extensions).

Upgrade for full visibility.

Redirect HTTP to HTTPS with user defined rules.

[Notice: in alpha state] If you like to look under the hood, writing some regular expression, or want a safer way to prevent massive XSS attack utilizing TLS or SSL encryption. HTTPS Somewhere will not let you disappointed. It is another HTTPS redirection extension that do exactly what you want. (See screenshot for better idea.) What make HTTPS Somewhere different from HTTPS Everywhere? - Encrypt what matter rather than attempt to encrypt many websites as possible. - Works with resources and elements even on the webpages that not secure.* - You take full control of the redirection with more advance user interface. - Take advantage from powerful regular expression you can define any pattern you can imagined. - Works completely in the background no icon added to the toolbar. - HTTPS Somewhere will never break any website without your consent. - It doesn't try to outsmart you. Some limitations: - Relatively difficult compared to HTTPS Everywhere. - Can't redirect to different hostname. How to use? - Check "Options" link in chrome://extensions/ * Why this matter? Why make some resources secure despite that the page itself is not? It doesn't make anything more secure, does it? There is a case in Thailand where an attacker exploit caching server of certain ISP. (Probably related to DNS and weird caching behavior. The details never made public and the case was denied by the ISP. However, this case affect millions of endpoints leaving lots of eye witness.) The attacker focus on Google's services included (but not limited to) Google Analytic and Google Ads. Result in massive and largest scale javascript injection I ever see in my life. (My estimation of the revenue the attacker gain from this one attack is at least 6 figures USD. The attack last for months because it is highly inconsistent.) So yeah in theory this probably wont gain any security to any page or prevent Eve to do bad things but in practical it does prevent some attack vector.

Extracted Data

You reached today's free scan limit (3/3 unique extensions).

Upgrade for full visibility.

URLs
20
IPv4
0
IPv6
0

URLs

View the external URLs this extension communicates with to understand its network activity and data interactions.

You reached today's free scan limit (3/3 unique extensions).

Upgrade for full visibility.

github.com/caolan/asynchttps://github.com/caolan/async
github.com/caolan/async/blob/master/lib/async.jshttps://github.com/caolan/async/blob/master/lib/async.js
getbootstrap.com-http://getbootstrap.com
github.com/twbs/bootstrap/blob/master/LICENSEhttps://github.com/twbs/bootstrap/blob/master/LICENSE
www.w3.org/Graphics/SVG/1.1/DTD/svg11.dtdhttp://www.w3.org/Graphics/SVG/1.1/DTD/svg11.dtd
www.w3.org/2000/svghttp://www.w3.org/2000/svg
scripts.sil.org/OFLhttp://scripts.sil.org/OFL
www.fontsquirrel.com-http://www.fontsquirrel.com
www.w3.org/1999/02/22-rdf-syntax-nshttp://www.w3.org/1999/02/22-rdf-syntax-ns#
ns.adobe.com/xap/1.0/http://ns.adobe.com/xap/1.0/
Showing 1 to 10 of 20 rows
Rows per page:

You reached today's free scan limit (3/3 unique extensions).

Upgrade for full visibility.

No IP addresses found

Version History

You reached today's free scan limit (3/3 unique extensions).

Upgrade for full visibility.

Browse and explore files within this extension package

You reached today's free scan limit (3/3 unique extensions).

Upgrade for full visibility.