On Windows boxes, is patching for Spectre and Meltdown necessary?

From what I’ve read, Spectre and Meltdown each require rogue code to be running on a Windows box in order for attacks to take place. The thing is, once a box has rogue code running, it’s already compromised.

Given that the … Continue reading On Windows boxes, is patching for Spectre and Meltdown necessary?

What parties have access to the *full* requested URL of a website accessed via the HTTPS protocol?

What parties have access to the full requested URL of a website accessed via the HTTPS protocol?

Here are some possibilities I can think of, and there could be more:

local device accessing the website
router
modem
local n… Continue reading What parties have access to the *full* requested URL of a website accessed via the HTTPS protocol?