RevocationList
taken and adapted from com.google.android.attestation.CertificateRevocationStatus to separate downloading and checking
taken and adapted from com.google.android.attestation.CertificateRevocationStatus to separate downloading and checking