当前位置:网站首页>Several methods of capturing packets under CS framework
Several methods of capturing packets under CS framework
2022-07-02 04:29:00 【luminous_ you】
burp+Proxifier Carry out the bag
Installation certificate

After installing the certificate, configure the host agent , Can be directly from chrome Get into

Pay attention to choose to install under the trusted root certification authority

Proxifier Set up burp Agent for

Because of the burp So let it go java My bag , Other package agents

This method does not capture the login package

Then close the agent , After login Proxifier Of traffic forwarding

Fiddler Everywhere+burp Use
install Fiddler Everywhere certificate

Set up the global agent (Fiddler Everywhere It will be configured automatically , You'd better check it )

A pin sets the browser proxy

View packets

Usual burp Use a little more ,Fiddler Everywhere Use a little more .
Set the upper agent to burp Listening port

And then you can burp Tested in

Simulator +Burp Grab the bag
First visit Fiddler Everywhere Listening port ( The experience card expires )
quite a lot cs Most of the applications of the architecture are mobile applications .
I use Raytheon simulator here 3.0 Stable version , The high version does not take the agent

Because the version is low, the certificate import needs to be imported from the settings , There is no way to double-click import , There are many tutorials online .
Install the bridge drive

After installation, you need to restart , Restart and enter the simulator , stay wifi Add proxy at

Then you can catch the bag


Use NoPE Capture traffic (TCP)
Need to use NoPE, He is a burp The plug-in of is used to grab non http My bag
Download address :https://github.com/summitt/Burp-Non-HTTP-Extension
Use Proxifier Setting agent , take PE File proxy to 8081 port

Set what to listen to PE file

burp Setting agent , Listen to all, and then the port is 8080

open NoPE, Set up dns analysis

Set the corresponding forwarding , For grabbing bags , Here will be 8081 The data received by the port turns 8080 port

Remember to click , take 80 and 443 add


Then you can see the bag you grabbed

You can also replay the data

If there is anything wrong, please correct it !

Burning sword security team
Burning sword security team (Tsojan Security Team) Focus on web Security 、 Intranet Security 、 Domain security 、 Network attack and defense 、 Mobile terminal security 、IOT Security 、 Code audit 、 Loophole recurrence ,APT Related technology and other research directions , Only relevant technical research articles are published .
official account

边栏推荐
- Why can't you remember when reading? Why can't you remember- My technology learning methodology
- Thinkphp內核工單系統源碼商業開源版 多用戶+多客服+短信+郵件通知
- Go branch and loop
- Deep understanding of lambda expressions
- Realizing deep learning framework from zero -- Introduction to neural network
- Yyds dry goods inventory kubernetes introduction foundation pod concept and related operations
- One click generation and conversion of markdown directory to word format
- Document declaration and character encoding
- My first experience of shadowless cloud computer
- 二叉樹解題(二)
猜你喜欢

Play with concurrency: what's the use of interruptedexception?

Let正版短信测压开源源码

Markdown编辑语法

MySQL error: expression 1 of select list is not in group by claim and contains nonaggre

Pytorch---使用Pytorch进行图像定位

Thinkphp Kernel wo system source Commercial Open source multi - user + multi - Customer Service + SMS + email notification

WiFi 5GHz frequency

What is 5g industrial wireless gateway? What functions can 5g industrial wireless gateway achieve?

CorelDRAW Graphics Suite2022免费图形设计软件

How much can a job hopping increase? Today, I saw the ceiling of job hopping.
随机推荐
[source code analysis] NVIDIA hugectr, GPU version parameter server - (1)
C language guessing numbers game
Research on the security of ognl and El expressions and memory horse
蓝湖的安装及使用
CY7C68013A之keil编译代码
FAQ | FAQ for building applications for large screen devices
How to solve the problem that objects cannot be deleted in Editor Mode
66.qt quick QML Custom Calendar component (supports vertical and horizontal screens)
Feature Engineering: summary of common feature transformation methods
I sorted out some basic questions about opencv AI kit.
What methods should service define?
深圳打造全球“鸿蒙欧拉之城”将加快培育生态,优秀项目最高资助 1000 万元
Which insurance company has a better product of anti-cancer insurance?
Wechat applet pull-down loading more waterfall flow loading
10 minutes to understand CMS garbage collector in JVM
[source code analysis] NVIDIA hugectr, GPU version parameter server - (1)
Uni app - realize the countdown of 60 seconds to obtain the mobile verification code (mobile number + verification code login function)
Play with concurrency: what's the use of interruptedexception?
C language practice - number guessing game
阿里云polkit pkexec 本地提权漏洞