Settings

Theme

Ask HN: What all content can a MitM proxy/app decrypt from the HTTPS traffic?

1 points by m33k44 3 years ago · 3 comments · 1 min read


If I install something like Wireshark, Fiddler or mitmproxy, will I be able to decrypt all HTTPS content flowing from my computer to the application server of interest? If yes, then how to secure web traffic against such activity?

alrlroipsp 3 years ago

> If I install something like Wireshark, Fiddler or mitmproxy, will I be able to decrypt all HTTPS content flowing from my computer to the application server of interest?

Yes.

> If yes, then how to secure web traffic against such activity?

By uninstalling Wireshark, Fiddler or mitmproxy.

  • m33k44OP 3 years ago

    > By uninstalling Wireshark, Fiddler or mitmproxy.

    Well, I was interested in preventing others from sniffing the traffic. If I am the app owner or an app user, then anyone on the LAN or shared home network can sniff the traffic.

    • alrlroipsp 3 years ago

      > I was interested in preventing others from sniffing the traffic.

      Unless you let others access your mitmproxy setup, then you do not need to worry.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection