360|iDev 2014

Scott Gustafson: SSL Sucks: Man in the Middle Attacks

How to detect and prevent a man in the middle (eavesdropping) attack over a network connection using SSL certificate pinning. If you are not using certificate pinning today, all of your network communications are vulnerable which will be demonstrated. Code and steps to protect your app and data over the network will be presented and demonstrated.



