-

Apple Pay and TLS Decryption
The process of troubleshooting Apple Pay with TLS decryption can be frustrating due to a lack of useful error messages. This post describes the steps involved to troubleshoot and identifies what hostname needs to be excluded from TLS decryption. Read more
-

Crowdsourcing Pinned Certificate Information
Understanding the complexities of pinned certificates doesn’t need to be hard. By crowdsourcing the collective knowledge of what we find, it can be easier to implement a decryption policy. Read more
-

Questing for a Decryption Policy
In my home lab experiments with TLS decryption policies, I discovered unique challenges with mobile apps having Pinned Certificates, impacting functionality. This post outlines a phased approach to implement decryption, balancing security with operational needs, starting with a ‘No Decrypt’ and expanding from there. Read more
-

RFC 5280 – What?! What alien language do you speak of?
π Embark on a Cryptographic Journey with RFC 5280! Greetings to all digital wanderers and crypto-enthusiasts! π Today, we unravel the mystical realm of digital certificates and embark on a fascinating journey to decrypt the process of certificate evaluation, all through the lens of the famed RFC 5280! πβ¨ First things first: Whatβs a digital Read more

