Some reports and papers are available that explore the issues around TLS:
-
SSL/TLS: What’s Under the Hood? – a paper from the SANS Institute providing a practical explanation of how TLS works. Published 13 April 2013
- A Tangled Mass: The Android Root Certificate Stores – paper by researchers at UC Berkeley discussing the problems of the current root certificate approach and apps being able to install their own certificates. Published 2 December 2014
-
Header Enrichment or ISP Enrichment? Emerging Privacy Threats in Mobile Networks – paper by researchers at UC Berkeley reporting on how some ISPs are adding additional information to HTTP headers for tracking purposes. Published 17 August 2015