Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Adding a CA cert to the OS trust store only works if the application uses it. I've encountered apps that don't use the OS trust store or networking stack; even then it's possible to reverse engineer the traffic though[0].

0: https://hugotunius.se/2020/08/07/stealing-tls-sessions-keys-...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: