Hacker News new | ask | show | jobs
by nathanaldensr 2535 days ago
Not if your traffic is HTTPS+TLS. They will only know--if they are the target DNS server--what IP you are connecting to. The secure channel protects against them knowing more than that.
1 comments

SNI leaks the domain name you are requesting. It's pretty shocking.
Firefox also supports ESNI! These crazy villians shakes fist at Mozilla
There is already work on encrypted SNI. Last time I looked, it uses information from DNS, so encrypted DNS is a prerequisite.