This is a recap of the presentation we gave at BSides Las Vegas 2014 and DefCon 22 as part of the Wall of Sheep Presentations. The purpose of this presentation was to underscore common SSL implementation failures in mobile applications, how to avoid them and show how SSL Session Caching can be abused, particularly on Android, to create persistent and nearly undetectable MitM conditions.