Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I'd consider cert pinning malware behaviour if it rejects the certificates explicitly trusted/installed by the user.


> I'd consider cert pinning malware behaviour if it rejects the certificates explicitly trusted/installed by the user.

You might be interested to know that this is official policy on Android. Yes, I'm appalled too.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: