ADVERTISEMENT
TechEconomy
Saturday, May 24, 2025
No Result
View All Result
  • News
  • Tech
    • DisruptiveTECH
    • ConsumerTech
      • Accessories
      • Phones
      • Laptop
      • Gadgets and Appliances
      • Apps
    • How To
    • TechTAINMENT
  • Business
    • Telecoms
      • Broadband
    • Mobility
    • Environment
    • Travel
    • Commerce
    • StartUPs
    • TE Insights
    • Security
  • Partners
  • Economy
    • Finance
    • Fintech
    • Digital Assets
    • Personal Finance
    • Insurance
  • Features
    • IndustryINFLUENCERS
    • Guest Writer
    • Appointment
    • EventDIARY
    • Editorial
  • Apply
  • TecheconomyTV
  • Techeconomy Events
  • BusinesSENSE For SMEs
  • TBS
  • News
  • Tech
    • DisruptiveTECH
    • ConsumerTech
      • Accessories
      • Phones
      • Laptop
      • Gadgets and Appliances
      • Apps
    • How To
    • TechTAINMENT
  • Business
    • Telecoms
      • Broadband
    • Mobility
    • Environment
    • Travel
    • Commerce
    • StartUPs
    • TE Insights
    • Security
  • Partners
  • Economy
    • Finance
    • Fintech
    • Digital Assets
    • Personal Finance
    • Insurance
  • Features
    • IndustryINFLUENCERS
    • Guest Writer
    • Appointment
    • EventDIARY
    • Editorial
  • Apply
  • TecheconomyTV
  • Techeconomy Events
  • BusinesSENSE For SMEs
  • TBS
No Result
View All Result
Tech | Business | Economy
No Result
View All Result
Podcast

Home » Can your Secure Web Gateway (SWG) Prevent SNI Fraud?

Can your Secure Web Gateway (SWG) Prevent SNI Fraud?

Techeconomy by Techeconomy
July 12, 2022
in Security
1

RelatedPosts

Business security by John Mc Loughlin, J2 Software CEO | Honeypot as a Service

Why We Introduced ‘Honeypot as a Service’ – J2 Software

May 20, 2025

Social Media: Report Shows Spike in Identity Fraud

May 20, 2025

Can your Secure Web Gateway (SWG) prevent SNI fraud? We checked and some of the top gateways can’t. Preventing attempts to bypass SNI-based HTTPS filtering can make the difference between a breach and staying safe.

Is Your SWG’s URL-Filter up to the Challenge? 

When it comes to securing internet access and browsing, organizations apply URL filtering to outbound, or egress, connections using secure web gateways (SWGs), firewalls and FWaaS. Geared to remote users, SWGs (pronounced ‘swags’) have become especially important as remote and hybrid users browse the web outside the confines of the corporate firewall. 

But what happens when a sophisticated attack circumvents one of the most basic inspection methods used by these security tools, called SNI-based URL filtering? With HTTPS connections fast becoming mainstream—this spells trouble for organizations who can’t spot the ruse. 

Manipulating the SNI Header in Encrypted Traffic

Advanced cyber attacks require organizations to verify that their secure web gateway can inspect all encrypted traffic and overcome attempts to establish fraudulent connections using stealth or bypass techniques.

One popular technique used by attackers is manipulation of the SNI header in encrypted traffic. The SNI, or Server Name Indication field, is part of the TLS protocol which encrypts web traffic to keep your web traffic private and render it undecipherable to prying eyes. 

The SNI is defined and controlled by the client’s browser. It indicates which HTTPS web server the client is trying to reach. SWGs, rely on this value to determine if they need to inspect the traffic or not, and subsequently decide whether to accept or block that traffic. 

In order to stay hidden from web gateways that attempt to inspect the encrypted traffic, attackers can manipulate the SNI value of a web request, and by doing so, bypass multiple inspection engines—including URL filtering, data loss prevention (DLP) and malware protection engines.

We checked. Not all SWGs are up to the task.

Not all SWGs or SASE/SSE vendors can protect their customers from such attacks.

Security vendors such as the Zscaler, Netskope and Palo Alto leave their customers exposed to such HTTPS bypass methods, even when the recommended policy is applied for all these engines in order to inspect and block suspicious web traffic.

Whether it’s from a malicious insider trying to exfiltrate company data, or sneaky malware that establishes a clandestine connection—all three SASE vendors were unable to detect the SNI manipulation. And their URL filtering, DLP and malware protection engines were circumvented, as well.

Their solutions failed to validate the destination certificate and verify that the user reached the correct destination. By relying on the SNI value to determine whether to inspect the traffic or not, customers of these security vendors become vulnerable and exposed to malware, unauthorized sites access and data exfiltration.

In addition, security teams are blind to this traffic due to misleading logs that show malicious traffic as benign. 

Harmony Connect foils SNI Fraud

As shown in the video above, Harmony Connect, Check Point’s SASE solution, prevents SNI fraud and protects against such circumvention techniques by validating both the SNI value and destination certificate to properly secure encrypted traffic. 

As an integrated cloud SWG and branch FWaaS, Harmony Connect Internet Access ensures users enjoy the same level of protection—with a full cloud-delivered enterprise security stack—whether working inside or outside the office. 

Harmony Connect Internet Access blocks phishing sites in real time, prevents zero day malware through advanced sandboxing and protects against browser exploits with a cutting edge cloud-delivered intrusion prevention system (cloud IPS) for deep packet inspection (virtual patching).

Leveraging the power of ThreatCloud, which combines 30+ AI and machine learning engines with big data threat intelligence, the service ensures that every site visited and file downloaded is thoroughly inspected and vetted, blocking the most evasive attacks before they can reach users. 

Harmony Connect Internet Access’s comprehensive security includes data loss prevention (DLP), URL filtering and granular application controls. 

Loading

Advertisements
MTN ADS

Author

  • Techeconomy
    Techeconomy

    View all posts
0Shares
Tags: SNI fraudSNI-based HTTPS
Previous Post

Embracing Modern, Agile Cloud-based Cybersecurity Solutions

Next Post

5G Adoption in Africa: Significant Equalising Opportunities Once Teething Issues Are Sorted Out, says ProLabs

Techeconomy

Techeconomy

Related Posts

Business security by John Mc Loughlin, J2 Software CEO | Honeypot as a Service
Security

Why We Introduced ‘Honeypot as a Service’ – J2 Software

by Destiny Eseaga
May 20, 2025
0

J2 Software has introduced 'Honeypot as a Service', a plug-and-play solution designed to deceive attackers, gather critical threat intelligence, and...

Read more
social media blogging and death of influence | Identity theft

Social Media: Report Shows Spike in Identity Fraud

May 20, 2025
Ikot Ekpene Declaration

Ikot Ekpene Declaration: Nigerian Judges Commit to Upholding Global Digital Rights Standards

May 20, 2025
Invinsense by Infopercept: Cybersecurity Offering Tailored for Fintechs

Mart Networks Unveils Comprehensive Cybersecurity Offering Tailored for Fintechs

May 19, 2025
Scattered Spider Behind UK Retail Attacks Now Eyeing U.S. Targets — Google Warns

Hackers Behind UK Retail Attacks Now Eyeing U.S. Targets — Google Warns

May 15, 2025
Sophos MSP Elevate

Sophos Accelerates Business Growth and Profitability for MSPs with the Launch of MSP Elevate Program

May 15, 2025
Next Post

5G Adoption in Africa: Significant Equalising Opportunities Once Teething Issues Are Sorted Out, says ProLabs

Comments 1

  1. Pingback: Can your Secure Web Gateway (SWG) Prevent SNI Fraud? – TechEconomy.ng - Heal Security Inc

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Techeconomy Podcast

Techeconomy Podcast
Techeconomy Podcast

Infowave is brought to you by TechEconomy. Every week we will bring new stories from startups and influencers who are shaping and changing the world we live in. We’ll also bring you reports on topics you should know.

Follow us @techeconomyng for more.

TECH TALK EPISODE 2
byTecheconomy

PRODUCTIVITY AND WORK-Life Balance

TECH TALK EPISODE 2
TECH TALK EPISODE 2
May 22, 2025
Techeconomy
CYBERSECURITY ESSENTIALS
April 24, 2025
Techeconomy
Digital Marketing Trends and strategies for 2025 and beyond
February 27, 2025
Techeconomy
Major Lesson for Techies in 2024 and Projections for 2025
December 6, 2024
Techeconomy
Major Lessons for Techies in an AI-Driven World | Techeconomy Business Series Highlights
November 26, 2024
Techeconomy
Maximizing Profitability Through Seasonal Sales: Strategies For Success
November 8, 2024
Techeconomy
Techeconomy Business Series
October 15, 2024
Techeconomy
PRIVACY IN THE ERA OF AI: GETTING YOUR BUSINESS READY
May 30, 2024
Techeconomy
Unravel the Secrets of Marketing Everywhere All At Once with Isaac Akanni from Infobip | Infowave Podcast Episode 1
February 9, 2024
Techeconomy
The Role of Ed-tech in Life Long Learning and Continuous Education
October 19, 2023
Techeconomy
Search Results placeholder

WHAT IS TRENDING

https://www.youtube.com/watch?v=g_MCUwS2woc&list=PL6bbK-xx1KbIgX-IzYdqISXq1pUsuA4dz

Follow Us

  • About Us
  • Contact Us
  • Careers
  • Privacy Policy

© 2025 Techeconomy - Designed by Opimedia.

No Result
View All Result
  • News
  • Tech
    • DisruptiveTECH
    • ConsumerTech
      • Accessories
      • Phones
      • Laptop
      • Gadgets and Appliances
      • Apps
    • How To
    • TechTAINMENT
  • Business
    • Telecoms
      • Broadband
    • Mobility
    • Environment
    • Travel
    • Commerce
    • StartUPs
    • TE Insights
    • Security
  • Partners
  • Economy
    • Finance
    • Fintech
    • Digital Assets
    • Personal Finance
    • Insurance
  • Features
    • IndustryINFLUENCERS
    • Guest Writer
    • Appointment
    • EventDIARY
    • Editorial
  • Apply
  • TecheconomyTV
  • Techeconomy Events
  • BusinesSENSE For SMEs
  • TBS

© 2025 Techeconomy - Designed by Opimedia.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.