I have a load balancer configurated with the port 443 to port 80 of the ec2 servers and with a sniffer like Burtsuite can I edit the request. How can configure the ELB to avoid this type of attack?.
For example when I access to this script /userprofile/Get.php sending by post the user_id param and with Burtsuite can modify this user_id to another.