About this question
What are the steps that I can follow to bypass HSTS protection?
My basic understanding of the SSLstrip2 came from a blog which contained the following paragraph - This tool provides a demonstration of the HTTPS stripping attacks that I presented at Black Hat DC 2009. It will transparently hijack HTTP traffic on a network, watch for HTTPS links and redirects, then map those links into either look-alike HTTP links or homograph-similar HTTPS links. It also supports modes for supplying a favicon which looks like a lock icon, selective logging, and session denial.