logo

Intercepting Traffic for Mobile Applications that Bypass the System Proxy

ID: 5d954a3a-68cb-5371-a55b-9278c5bb9854

STIX ID: report--5d954a3a-68cb-5371-a55b-9278c5bb9854

Feed Name: Black Hills Infosec Blog

Date Published: 2025-04-30

Date Updated: 2026-04-27

Author: BHIS

...
...

This blog provides a step-by-step technical guide for intercepting mobile app network traffic: on iOS by using Mac Internet Sharing, creating a bridge interface, adding pf redirection to forward traffic to a Burp listener, and enabling invisible proxying; and on Android by using HTTP Toolkit (Pro) with a rooted device or AVD to establish a VPN-style capture, install a CA certificate, and forward traffic to an upstream proxy. It also calls out common obstacles such as certificate pinning and library-specific verification (e.g., BoringSSL), and recommends additional tooling or methods where HTTP Toolkit or system proxies are insufficient.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.