Google Chrome to start marking HTTP connections as insecure.
This is on the path to blocking HTTP altogether, eventually.
Three real reasons for the HTTPS push, as it has nothing at all to do with security. If you believe that hogwash, Iโve got some water with memory Iโd like to sell you.
1) To make security more difficult so regular users are driven to cloud services controlled by Google, Microsoft, Amazon, et al. Even if certs are free, it increases the administrative burden greatly and is beyond most peopleโs technical ability.
2) To control computing ever more, apart from the above.
3) To avoid ISPs injecting ads and interfering with ad revenue, both by that ad injection and by monitoring user behavior. Too complex to write about here, but this includes as well other ad revenue protection measures such as downgrading in Googleโs results the sites that donโt serve ads in HTTPS.
Note that I am glad that 3 is occurring, but donโt think my rights should depend on large corporations battling one another for supremacy.
Enforcing HTTPS has absolutely nada to do with security but rather with protecting revenue and generating new revenue sources.