Google has launched Android 17 with support for Encrypted Client Hello, a privacy standard that encrypts the domain name sent when a connection opens, preventing network operators, ISPs, and Wi-Fi administrators from reading the destination. This is the first broad Encrypted Client Hello rollout on a major mobile OS, developed in collaboration with the Jigsaw team and external developers. The protection only covers sites and apps that have enabled the feature: requests to non-compliant destinations still expose their domain to the network. Observers can still see the destination server’s IP address and the volume of data exchanged. Android 17 also enables Certificate Transparency by default and requires apps to request permission before scanning a local network.
Source: Read the original article

