Intermedian attack is used to intercept encrypted information transmitted over https.

Source: Internet
Author: User

Intermedian attack is used to intercept encrypted information transmitted over https.

Use Charles to intercept mobile terminal logon passwords

1. Make the PC and Android mobile phone in the same Wifi

2. Install Charles's SSL certificate on the PC side

2. Set the proxy address of Wifi in the Android phone to the current address of the PC, and the port number is 8888.

3. Import the certificate provided by Charles to the Android mobile phone. Set it on Xiaomi mobile phone as an example.> Security and Privacy> install from storage device> select Certificate

4. Open the app on your mobile phone and log on to the app.

5. capture data packets during application login on the PC end

6. add the corresponding URL to Charles Proxy> Proxy Setting> SSL> Check on Enable SSL proxying add location

7. Simulate user logon again. At this time, Charles can intercept plaintext Information encrypted over HTTPS.

This method is provided to testers to verify the security of websites and applications.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.