Https Traffic


9.0
1.2.0 by hpAndro (Android AppSec)
May 6, 2022 Old Versions

About Https Traffic

You can replay and manipulate requests to test for server-side vulnerabilities.

In many cases, it is most practical to configure a system proxy on the mobile device, so that HTTP(S) traffic is redirected through an interception proxy running on your host computer. By monitoring the requests between the mobile app client and the backend, you can easily map the available server-side APIs and gain insight into the communication protocol. Additionally, you can replay and manipulate requests to test for server-side vulnerabilities.

Several free and commercial proxy tools are available. Here are some of the most popular:

1) Burp Suite

2) OWASP ZAP

To use the interception proxy, you'll need run it on your host computer and configure the mobile app to route HTTP(S) requests to your proxy. In most cases, it is enough to set a system-wide proxy in the network settings of the mobile device - if the app uses standard HTTP APIs or popular libraries such as okhttp, it will automatically use the system settings.

Using a proxy breaks SSL certificate verification and the app will usually fail to initiate TLS connections. To work around this issue, you can install your proxy's CA certificate on the device.

Intercepting HTTP(S) Traffic

What's New in the Latest Version 1.2.0

Last updated on Jul 5, 2022
New release with upgrade.

Additional APP Information

Latest Version

1.2.0

Uploaded by

David Garcia

Requires Android

Android 6.0+

Available on

Report

Flag as inappropriate

Show More

Use APKPure App

Get Https Traffic old version APK for Android

Download

Use APKPure App

Get Https Traffic old version APK for Android

Download

Https Traffic Alternative

Get more from hpAndro (Android AppSec)

Discover