11 https://www.ssllabs.com
12 https://www.dfn-cert.de/dokumente/workshop/2013/FolienSmith.pdf
Case in Point: Broken SSL/TLS
A study
12
done by University of Hannover in Germany found that around
8% of publicly available Android applications had broken SSL/TLS
implementations. This included trusting all certificates and hostnames,
trusting all certificate authorities, and using both encrypted and non-
encrypted mixed-mode sessions.