当前位置:网站首页>Several methods of capturing packets under CS framework
Several methods of capturing packets under CS framework
2022-07-02 04:29:00 【luminous_ you】
burp+Proxifier Carry out the bag
Installation certificate

After installing the certificate, configure the host agent , Can be directly from chrome Get into

Pay attention to choose to install under the trusted root certification authority

Proxifier Set up burp Agent for

Because of the burp So let it go java My bag , Other package agents

This method does not capture the login package

Then close the agent , After login Proxifier Of traffic forwarding

Fiddler Everywhere+burp Use
install Fiddler Everywhere certificate

Set up the global agent (Fiddler Everywhere It will be configured automatically , You'd better check it )

A pin sets the browser proxy

View packets

Usual burp Use a little more ,Fiddler Everywhere Use a little more .
Set the upper agent to burp Listening port

And then you can burp Tested in

Simulator +Burp Grab the bag
First visit Fiddler Everywhere Listening port ( The experience card expires )
quite a lot cs Most of the applications of the architecture are mobile applications .
I use Raytheon simulator here 3.0 Stable version , The high version does not take the agent

Because the version is low, the certificate import needs to be imported from the settings , There is no way to double-click import , There are many tutorials online .
Install the bridge drive

After installation, you need to restart , Restart and enter the simulator , stay wifi Add proxy at

Then you can catch the bag


Use NoPE Capture traffic (TCP)
Need to use NoPE, He is a burp The plug-in of is used to grab non http My bag
Download address :https://github.com/summitt/Burp-Non-HTTP-Extension
Use Proxifier Setting agent , take PE File proxy to 8081 port

Set what to listen to PE file

burp Setting agent , Listen to all, and then the port is 8080

open NoPE, Set up dns analysis

Set the corresponding forwarding , For grabbing bags , Here will be 8081 The data received by the port turns 8080 port

Remember to click , take 80 and 443 add


Then you can see the bag you grabbed

You can also replay the data

If there is anything wrong, please correct it !

Burning sword security team
Burning sword security team (Tsojan Security Team) Focus on web Security 、 Intranet Security 、 Domain security 、 Network attack and defense 、 Mobile terminal security 、IOT Security 、 Code audit 、 Loophole recurrence ,APT Related technology and other research directions , Only relevant technical research articles are published .
official account

边栏推荐
- Markdown编辑语法
- Why can't you remember when reading? Why can't you remember- My technology learning methodology
- Three years of experience in Android development interview (I regret that I didn't get n+1, Android bottom development tutorial
- Deep understanding of lambda expressions
- 藍湖的安裝及使用
- C language practice - number guessing game
- Wechat applet map annotation
- There is no prompt for SQL in idea XML, and the dialect setting is useless.
- LeetCode-归并排序链表
- Playing with concurrency: what are the ways of communication between threads?
猜你喜欢

阿里云polkit pkexec 本地提权漏洞

A summary of common interview questions in 2022, including 25 technology stacks, has helped me successfully get an offer from Tencent

Exposure X8标准版图片后期滤镜PS、LR等软件的插件

Fluent icon demo

Alibaba cloud polkit pkexec local rights lifting vulnerability

Pytorch---使用Pytorch进行鸟类的预测

Spring moves are coming. Watch the gods fight

Federal learning: dividing non IID samples according to Dirichlet distribution

Force buckle 540 A single element in an ordered array

Introduction to vmware workstation and vSphere
随机推荐
[JS event -- event flow]
WiFi 5GHz frequency
云服务器的安全设置常识
The core idea of performance optimization, dry goods sharing
Pytorch yolov5 exécute la résolution de bogues à partir de 0:
60后关机程序
Dare to go out for an interview without learning some distributed technology?
Play with concurrency: draw a thread state transition diagram
Deep understanding of lambda expressions
Fluent icon demo
office_ Delete the last page of word (the seemingly blank page)
二叉樹解題(二)
Three years of experience in Android development interview (I regret that I didn't get n+1, Android bottom development tutorial
文档声明与字符编码
第十六周作业
I sorted out some basic questions about opencv AI kit.
Thinkphp内核工单系统源码商业开源版 多用户+多客服+短信+邮件通知
Li Kou interview question 02.08 Loop detection
Its appearance makes competitors tremble. Interpretation of Sony vision-s 02 products
Mysql表insert中文变?号的问题解决办法