Hacker News new | ask | show | jobs
by scarface74 2412 days ago
How do you “catch” them? The ID is sent from the app and not in plaintext.
2 comments

Through the usual software analysis methods (reverse engineering, static and dynamic analysis, ...)
I imagine with the usual review process
The review process can’t tell the contents of the data being sent back.