Google has integrated platform-wide support for Encrypted Client Hello (ECH) into Android 17. This new internet standard encrypts the destination website information from the start of a connection. Previously, even with secure HTTPS connections, internet service providers (ISPs) and Wi-Fi operators could still view the domain names of websites and services users visited.
ECH functions as a privacy extension for TLS, the protocol securing HTTPS connections. It encrypts the Server Name Indication (SNI) during the initial TLS handshake, which typically reveals the contacted hostname. With ECH enabled, network operators will only see a content delivery network (CDN) like Cloudflare and the amount of data transferred, not the specific website or application being accessed.
Jigsaw, a tech incubator within Alphabet, states that ECH closes a critical internet privacy gap. The unencrypted domain name data could be used for building user profiles for targeted advertising or by malicious actors for phishing campaigns. By encrypting this information, ECH aims to make the internet safer and prevent tracking of user activities.
This implementation means that Android 17 users will benefit from ECH at a platform level, enhancing connection privacy and obscuring profiling metadata. While Chrome 117+ and Firefox 119+ already support ECH, Android 17's system-level integration extends this protection more broadly. For app developers, upgrading to OkHttp 5.5.0 and enabling ECH is necessary to utilize this feature.
ECH will be enabled by default on Android 17. This move positions Android as the first major mobile operating system to offer platform-wide ECH support. The standard works in conjunction with private DNS to further hide domain names, ensuring that network providers and snoopers can no longer easily identify which websites or apps users are accessing.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Google has implemented platform-wide support for Encrypted Client Hello (ECH) in Android 17, making it the first major mobile operating system to do so. This new internet standard encrypts website destination information, preventing internet service providers from seeing specific domain names and thus limiting user profiling and targeted advertising.
Android 17 introduces platform-level support for Encrypted Client Hello (ECH), a new privacy standard that encrypts the Server Name Indication (SNI) during TLS handshakes. This change prevents internet service providers and Wi-Fi operators from easily seeing visited domain names, enhancing user privacy by obscuring profiling metadata.
Android 17 includes new network security features such as Encrypted Client Hello (ECH) to hide domain names from network operators and the ability for carriers to disable 2G by default. These updates aim to improve user privacy by encrypting network traffic details and mitigate SMS blaster attacks that exploit less secure 2G networks.