Hacker News new | ask | show | jobs
by ranger_danger 499 days ago
But read and write syscalls are used by the application to do I/O on the sockets before/after the encryption, which can be intercepted. Or you can attach uprobes directly to the TLS library's own functions.