mirror of
https://github.com/httptoolkit/frida-interception-and-unpinning.git
synced 2026-10-02 14:02:24 +02:00
This is really cool. Rather than just blindly disabling all TLS validation, we now verify the cert directly against the CA you provide. We only do extremely basic checks (some more testing required to validate this provides even basic guarantees) so this shouldn't be relied for rock-solid TLS validation (probably even after it's been tested tbh) and it won't handle many real-world cases of CA validation, but in terms of "do a local MitM while retaining the basics of TLS protection" it should do a reasonable job, hopefully.