Earlier quoted context omitted.
Just want to clarify something: > I can see how they get HTTP information, since they would intercept at transit hubs - but how are they getting all Facebook private messages and Gmail? I don't know how they're getting GMail(and this is probably a slide from when GMail was accessible via HTTP and not HTTPS), but Facebook chat specifically is done over a non-secure XMPP server. The only 'secure' part of that transacti…
You're right the slides are pre default HTTPS gmail (2007/8). But even then gmail is the only webmail service that offers server-to-server encryption, so data can still get intercepted when communicating with someone using yahoo mail or hotmail for example: http://news.cnet.com/8301-13578_3-57590389-38/how-web-mail-p...
You think HTTPS keeps you safe? All it takes is ONE recipient to have an insecure connection and the entire thread is revealed.
Isn't it nice how every email conveniently includes a copy of the entire preceding conversation.