- What: Android 17 introduces Encrypted Client Hello for enhanced network privacy
- Impact: Users will benefit from improved privacy when accessing websites over HTTPS
Network Security Android 17 enhances network privacy with Encrypted Client Hello August 28, 2026 Share By SC Staff (Adobe Stock) Google is introducing new network security protections in Android 17 to strengthen connection privacy, address cellular vulnerabilities, and protect the privacy of users’ home networks. Android 17 adds support for Encrypted Client Hello (ECH), a new privacy standard that operates in conjunction with private DNS to hide profiling metadata, including visited domain names, with further coverage provided by Bleeping Computer. Encrypted Client Hello (ECH) is a privacy extension for TLS that encrypts the initial part of the TLS handshake, specifically the Server Name Indication (SNI), which previously revealed the contacted hostname. This prevents internet service providers and Wi-Fi operators from easily seeing which websites or apps users are accessing, even on secure HTTPS connections, thus hindering commercial profiling. ECH will be enabled by default for apps targeting Android 17 that use compatible networking libraries. Google has also implemented adjustments to Local Network Protection, requiring apps to gain permission before scanning or connecting to local devices. Additionally, Android 17 enables Certificate Transparency by default, making forged certificates more evident. Participating mobile operators can now disable 2G for subscribers, reducing exposure to SMS blasters and rogue base stations. These updates aim to bolster user privacy and security across various network interactions. Source: Bleeping Computer An In-Depth Guide to Network Security Get essential knowledge and practical strategies to fortify your network security. Learn More SC Staff Related Firewalls, Routers How to Evaluate NDR Platforms for Incident Response Effectiveness SC Editorial Intelligence , expert reviewed August 27, 2026 Firewalls, Routers How to Evaluate Network Policy Management and Governance Platforms SC Editorial Intelligence , expert reviewed August 27, 2026 Network Security Unpatched Calix router vulnerability allows remote attackers to expose home networks SC Staff August 25, 2026 The flaw, identified as CVE-2026-75501, affects devices running EXOS/6.6.47 firmware. Related Events Cybercast How to transform your SOC through XDR and MDR On-Demand Event Cybercast AI for network security: Problems and solutions On-Demand Event Virtual Conference Fortifying the Foundation: Tackling Evolving Challenges in Network Security On-Demand Event Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe Related Terms ACK Piggybacking Address Resolution Protocol (ARP) Bastion Host Bridge Broadcast Cache Poisoning Decapsulation Distance Vector Domain Domain Name You can skip this ad in 5 seconds