<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Aapo Oksman: certmitm — Automated Exploitation of TLS Certificate Validation Flaws</title>
        <link>https://peertube.eqver.se/videos/watch/5913c844-741f-4246-8563-7905f7db9fa3</link>
        <description>A DEF CON 31 talk on weaknesses in TLS certificate validation within client applications. Despite the widespread use of TLS, developers often implement certificate checks incorrectly or rely on insecure library configurations. The researcher introduces certmitm, a tool that automatically detects and exploits these vulnerabilities. Through real-world examples, the talk demonstrates how such flaws can enable man-in-the-middle (MITM) attacks against applications on platforms like iOS and Windows 11.</description>
        <lastBuildDate>Fri, 24 Jul 2026 11:44:05 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>PeerTube - https://peertube.eqver.se</generator>
        <image>
            <title>Aapo Oksman: certmitm — Automated Exploitation of TLS Certificate Validation Flaws</title>
            <url>https://peertube.eqver.se/client/assets/images/icons/icon-512x512.png</url>
            <link>https://peertube.eqver.se/videos/watch/5913c844-741f-4246-8563-7905f7db9fa3</link>
        </image>
        <copyright>All rights reserved, unless otherwise specified in the terms specified at https://peertube.eqver.se/about and potential licenses granted by each content's rightholder.</copyright>
        <atom:link href="https://peertube.eqver.se/feeds/video-comments.xml?videoId=5913c844-741f-4246-8563-7905f7db9fa3" rel="self" type="application/rss+xml"/>
    </channel>
</rss>