Hundreds of Android applications are vulnerable to man-in-the-middle (MitM) attacks due to their failure to properly validate X.509 SSL certificates. Carnegie Mellon University CERT has found more than 400 vulnerable Android applications that could allow a man in the middle attack. Android store vendors such as Google or Amazon have been notified with full details on the vulnerability and were advised to perform the same tests alongside suitability testing for store inclusion. More are still to come as the vulnerability spreadsheet hosted on Google Docs is constantly being updated.”]