nabla-c0d3 / ssl-kill-switch2

Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS and macOS applications.
Other
3.08k stars 466 forks source link

Detecting SSL Kill Switch 2 #103

Closed feanluvien closed 9 months ago

feanluvien commented 2 years ago

Hi,

I am an IS auditor and I perform security audits on my company's mobile apps. I am using the SSL Kill Switch 2 tool during security tests and bypassing certificate pinning. Very useful tool and thank you for that :)

One question raised during the audit. Is there a way to detect ssl kill switch 2 or a similar bypassing tool installed on device? Can a mobile application do that?

I am preparing a recommendation for a detection control. But first, I need to learn whether the detection control is feasible or not.

Kind regards.

1trackprojects1 commented 2 years ago

Sus.