Break a dozen secret keys, get a million more for free
blog.cr.yp.to
blog.cr.yp.to
How about probably the single-most-encrypted block in history: 'GET http://www.g'?
GET / HTTP/1.1
?
where the ? is the first letter of the most common first request header. A bit less reliable for a given target (due to needing to guess the header), but a bit more effective in general (due to not actually caring about the domain).Usually the URI in an HTTP/1.1 request is relative.
DHE was in the original SSLv3 spec, but not commonly used before NSS added support for DHE_RSA in the early 2000s I think. ECDHE did not come until much later.