Finding an MitM actor?

My traffic appears to be routing through Ukraine, I'm getting these translate dialog options showing up fairly often on many websites. My web queries, search.brave.com, etc, have also been incredibly slow.

Could someone be sitting on my connection?

I use Kaspersky antivirus so this was the first suspected. I've looked at the response headers from sites and the returned files but have come up empty, iro finding something that suggests an injection of sorts.

I'm sorry this is so very vague. Why would I be seeing translate options for Ukrainian? I've tried with VPN and killswitch in multiple countries but still have the same issues.

Tl;Dr does anyone have a process or know of a good source on how to diagnose this sort of thing? Is mitm what I'm meant to be looking for?

Happy to delve as deep as needed to fix this. TIA

submitted by /u/pLeThOrAx
[link] [comments]

from hacking: security in practice https://ift.tt/c1RxwoE

Comments