Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • Home
  • SEARCH
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 8502483
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: June 11, 20262026-06-11T01:29:51+00:00 2026-06-11T01:29:51+00:00

I want to be sure that the client asking for HTTP get requests at

  • 0

I want to be sure that the client asking for HTTP get requests at my web app server is coming specifically from my mobile app and not from anything else. I have considered different options and still have not come up with anything. Most importantly I do not want there to be user interaction, I want the mobile app itself to handle this. The best I’ve come up with is having a secret key on the mobile app that the web app has prior knowledge to, but if the mobile app was ever decompiled or the key was uncovered somehow then this would be useless.
Communication between the two is encrypted in AES 128bit CBC cipher with a random IV– which is passed back and forth in plain text and changes after each transaction.

Is being certain communication is coming from the mobile app something that is simply not possible, logistically, and requires human intervention– such as requiring the user to type in a password that they remember and that is already set up on the server?

Ultimately the mobile app updates a database on the web app server and so I want to make sure the requests are being made from the app and not someone posing as the app.

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-06-11T01:29:52+00:00Added an answer on June 11, 2026 at 1:29 am

    This can never be possible. This is due to the fundamental property behind CWE-602: Client-Side enforcement of Server-Side Security. There is no way for you to dictate the behavior of clients. Nothing is preventing the user of your software from attaching a debugger and reading memory or modifying your client.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

I'm building a client-server (c#) application that uses a web services to synchronize the
I want to make sure that if any error occurs during the database processing
I want to be sure that user uploaded files are real videos or pictures,
I want to make sure that all 3 conditions result in the same answer
I want to make sure that no value is cut off in a workbook
I want to make sure that I only print maximum 80 character long lines,
I have this function I'm using and I want to be sure that it
I am using APEX 3.2 and I want to make sure that a text
Many of my views fetch external resources. I want to make sure that under
I have the following code; I want to make sure that submit does not

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.