https://dutzi.github.io/tamper/
https://www.telerik.com/fiddler
https://github.com/alibaba/lightproxy
https://wiki.squid-cache.org/Features/SslPeekAndSplice
http://www.tofuproxy.stargrave.org/
https://github.com/http-party/node-http-proxy
UPDATE: did that myself, but wish someone takes over. I only check for new and better stuff once in 3 years. The community deserves someone better.
Something which I don't like is that every time I need the traffic to go through burp I need to go the WiFi settings and modify the "advance option" to use proxy. And if I keep the proxy settings on all the time then I've had issues with playstore and other such app, on the testing device. So that small bit of manual work is what I don't like.
In another comment[2] they mentioned they'll be releasing an android interceptor which would work without proxy, I think that would make me try this.
[1] [https://github.com/federicodotta/Brida](https://github.com/f...
[2] [https://news.ycombinator.com/item?id=30541263](https://news....
I was looking for something like this. Tried mitmproxy but it was useless against cert pinning. So I went with decompiling the app to extract the auth keys and urls for the internal API it was using.
- Android device running Android 10 (generally using older versions is better) - Magisk for root + Trust User Certificates module - mitmproxy (sometimes using mitmweb) - ProxyDroid to connect to mitmproxy - Frida with a one of a handful open source SSL pinning bypass scripts (and a custom one at work)
When network requests aren't enough, I reach for JADX-GUI for decompilation and Frida (REPL and custom scripts) for extracting data at runtime (taking the necessary "cleanroom" precautions for commercial projects).