Dissecting SSL handshake

from blog Marek's idea of the day, | ↗ original
Marek's Marek's totally not insanetotally not insane idea of the day idea of the day 16 June 201216 June 2012 Not everyone knows that the SSL handshake is not encrypted. When you think about it - there isn't other way, before the keys are exchanged the communication must be unencrypted. But I doubt many people think about it.Not everyone knows that the SSL handshake is not encrypted. When you think about it - there isn't other way, before the keys are exchanged the communication must be unencrypted. But I doubt many people think about it. Not only the SSL handshake is plain-text, but also it contains rather interesting data. I...Not only the SSL handshake is plain-text, but also it contains rather interesting data. I...