How can my ISP store my search history? DuckDuckGo and Google offer https to do the searching.
How can my ISP know where I use my credit card? Whenever I pay by credit card I use https.
How can my ISP store my search history? DuckDuckGo and Google offer https to do the searching.
How can my ISP know where I use my credit card? Whenever I pay by credit card I use https.
The bill's bad nonetheless, but one thing's for sure: the ISPs won't be spying on your searches or your banking.
The ISP can MITM the handshake and return a different certificate, but unless a certificate authority supported by your browser is complicit, they can't get that certificate signed for the domain you're trying to visit, and the browser will complain.
Unless they made it illegal to, I'm sure we'd see all the major browsers work to deprecate those certificate authorities pretty quickly - not doing so would make SSL useless.
What about the recent Comodo breaches? Their certs are still trusted by all major browsers (as far as I'm aware).
I realise they weren't complicit in issuing the fraudulent certs, but the effect is the same.