SSLUnpinning_Xposed

Traffic intercept

Allows bypassing of SSL certificate validation in Android apps to intercept traffic

Android Xposed Module to bypass SSL certificate validation (Certificate Pinning).

GitHub

792 stars
27 watching
116 forks
Language: Java
last commit: about 10 years ago

Related projects:

RepositoryDescriptionStars
isecpartners/android-ssl-trustkillerBypasses SSL certificate pinning to allow intercepting encrypted traffic from many applications on Android devices.710
isecpartners/android-killpermandsigchecksA tool to bypass Android's signature and permission checks for Inter-Process Communications (IPC) using Cydia Substrate.83
maxtoyberman/react-native-ssl-pinningProvides SSL pinning and cookie handling for secure networking in mobile apps using OkHttp 3 on Android and AFNetworking on iOS.349
proxymanapp/atlantisA tool for intercepting and capturing HTTP/HTTPS traffic from iOS apps without proxying or modifying the app's network activity1,289
niklashigi/apk-mitmAutomates the process of preparing Android APK files to inspect HTTPS traffic4,003
ac-pm/inspeckageAn Android application analysis tool with dynamic API hooks and Xposed module capabilities2,827
nvisosecurity/magisktrustusercertsAutomatically adds user certificates to the system root CA store for secure HTTPS traffic on Android devices1,796
sslmate/certspotterMonitors Certificate Transparency logs to alert on suspicious certificate issuances985
api0cradle/ultimateapplockerbypasslistA repository documenting common techniques to bypass AppLocker security policies1,931
fabiomsr/okhttp-peer-certificate-extractorExtracts peer certificates from given SSL certificates to enable certificate pinning in HTTP connections79
nmilcoff/breachdetectorA tool for detecting and analyzing security vulnerabilities in Xamarin mobile applications89
portswigger/html5-auditorAn HTML validation and security testing tool for identifying vulnerabilities in web applications4
adrianosela/sslmgrProvides an abstraction layer around Acme/Autocert certificate management for a Go-based HTTPS server26
sh4hin/mobileapp-pentest-cheatsheetProvides a comprehensive guide to testing and analyzing mobile applications for security vulnerabilities280
timwr/cve-2016-5195A proof of concept exploit demonstrating a vulnerability in Android's SELinux implementation960