It seems grandiose to call that 'certificate pinning' when it is just hard coding, e.g. a self-signed CA cert or (worse) a particular server cert.
Makes me suspect that a lot of client side validation is happening with mobile apps.
Makes me suspect that a lot of client side validation is happening with mobile apps.
No comments yet.