If it is set up correctly, i guess that approach would be ok... It's still a tad bit early for me, but for now i don't see any real problem...
Would it be possible for the MITM to change the code that is being used to send the client's private key? I'm no expert on this, but in my understanding, the code that generates the private key can be read by the MITM, right?
But in 2023, I'm still puzzeled to see Cloudflare having the majority of the market. CF is everywhere
Tor browser becomes more and more annoying to use because of Cloudflare, far too many websites website nowadays show the Cloudflare loading screen.
Thinking about it:
- the structure of a DDOS attack is decentralized
Isn't the real problem the millions of compromised computers that are part of those DDOS networks?