Went into the rabbit hole of IL2CPP Unity based application on Android, and learned a lot on Frida, Ghidra, and everything in between - so much information is out there but it’s a mess.
Information is scattered and fragmented, reminds me of the early days of DVD Ripping - people were making money out of it - so information was valuable and not shared.
I still haven’t figured out how to TLS unpin this app, all the methods found in GitHub, Frida and the numerous blogposts don’t work - Unity has introduced some sort of protection that I can’t get around.
Hope to figure it out eventually and share my findings in a blogpost.
If you have experience with #frida #unity #certificatepinning bypassing - and want to look at the challenge let me know :)
Information is scattered and fragmented, reminds me of the early days of DVD Ripping - people were making money out of it - so information was valuable and not shared.
I still haven’t figured out how to TLS unpin this app, all the methods found in GitHub, Frida and the numerous blogposts don’t work - Unity has introduced some sort of protection that I can’t get around.
Hope to figure it out eventually and share my findings in a blogpost.
If you have experience with #frida #unity #certificatepinning bypassing - and want to look at the challenge let me know :)