• XSS.stack #1 – первый литературный журнал от юзеров форума

Monitoring API Requests of Mobile Application

vulmux

floppy-диск
Пользователь
Регистрация
21.01.2024
Сообщения
2
Реакции
1
Hey XSS members,

I want to monitor the API requests from an app and capture the payloads and other data of any request originated from an app installed on my phone.

I tried mitmproxy but it only works for few apps and doesn't show api requests from apps which are using SSL pinning.

I am using an Android phone.

Help me.
 
Are you looking for network dpi or sdk api calls because i would intuitively presume the former would be easily handled with wireshark/emulation/vpn in some combination, no?
 
Are you looking for network dpi or sdk api calls because i would intuitively presume the former would be easily handled with wireshark/emulation/vpn in some combination, no?
I am looking for the api calls made by app to different websites. Tried the wireshark and mitmproxy but it only shows the requests that are not using SSL Pinning.
 
Use a module or modify the apk would be my suggestion
stepany4 Veil gliderexpert are some of the most knowledgeable experts on the topic of general teleco and peripheral tech for future ref btw
 
Последнее редактирование:
for example
 
Последнее редактирование:
Use a module or modify the apk would be my suggestion
Veil gliderexpert are some of the most knowledgeable experts on the topic of general teleco and peripheral tech for future ref btw
Скажу латинянски - perfecto
 
I'll say in Latin - perfecto
↑ ↑ ↑

Knows a thing or two about copper wires and other alchemy, too!
*nauka- mnejal, drugya
Cool share!
 
Последнее редактирование:


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх