Unlocking Hidden API Data: Man in the Middle Proxy - Introduction to MITMProxy's Practical Power

Поділитися
Вставка
  • Опубліковано 19 січ 2025

КОМЕНТАРІ • 13

  • @ctrl-alt-del0
    @ctrl-alt-del0 Рік тому +7

    Just discovered your channel a few days ago and I thought it's dead. Glad you're back, your content is great.

  • @cs8425
    @cs8425 Рік тому

    Hi, Great video. Maybe you should have also mentioned about the firewall settings because other computers may not be able to reach the computer because of it and will need some rules added.

  • @ctrl-alt-del0
    @ctrl-alt-del0 Рік тому +3

    Hey there, I tried this today and it seems like Android is placing some measures to prevent 3rd parties from listening to apps traffic, after a bit of a research it seems like this is called SSL pinning, do you know anyway around this?

    • @MakeDataUseful
      @MakeDataUseful  Рік тому +1

      Ah yes! SOME iPhone apps do the same. There is a couple of ways around it. There is a tool called FRIDA that allows for patching and there is also kind souls out in the open source community that share parched APK files that can be side loaded. I’d suggest using a virtual phone from the Android Studio. For Instagram and Threads search Instagram SSL Pinning Bypass GitHub 😎 Let me know how you go!

    • @ctrl-alt-del0
      @ctrl-alt-del0 Рік тому

      @@MakeDataUseful Thanks man. Looks like Frida might be the only solution for an unrooted phone. I will definitely try it. Thanks again

  • @SK-wt8yd
    @SK-wt8yd 7 днів тому

    But the traffic you were sniffing is still encrypted with SSL right?

    • @MakeDataUseful
      @MakeDataUseful  6 днів тому +1

      @@SK-wt8yd I installed root certificates on the device. This allows MITMProxy to see the payloads etc

  • @Mohammedlll-jg1hw
    @Mohammedlll-jg1hw 3 місяці тому

    I'm using mitmproxy to monitor traffic, and it works for Chrome, but when I open other apps, I don't see any API requests at all. I need help to get this working, especially for apps I'm testing. Any suggestions?"

  • @EduardoMartin-y5e
    @EduardoMartin-y5e Рік тому

    Merry Christmas!!

  • @dextm8783
    @dextm8783 Рік тому +1

    whats the best way to make a bit of money data scraping? love the vids btw

    • @MakeDataUseful
      @MakeDataUseful  Рік тому +2

      Number one thing is solving problems for people and business. I’ve been spinning up API endpoints and popping them on marketplaces like RapidAPI. An extension to this is building data plugins for tools like Jira and Shopify etc. The solving someone’s problem is key!

  • @rockcaesarpaper291
    @rockcaesarpaper291 Рік тому