2 ms·
Well, to accomplish that with HTTPS traffic, you'd have to tell your device to accept (for example) Burp's CA certificate. Many applications (especially sensiti
by eat 7y ago
Well, to accomplish that with HTTPS traffic, you'd have to tell your device to accept (for example) Burp's CA certificate. Many applications (especially sensitive applications such as banking) nowadays use certificate pinning to verify the expected certificate and prevent this kind of MITM from happening. So you'd still need to do some sort of lower-level manipulation, such as manually hooking the certificate validation functions, to even be able to get this proxying to work.
It's becoming increasingly difficult to really see what's going on without a jailbroken iPhone, or rooted Android device.