Jump to content

7 posts in this topic

Recommended Posts

Posted

I have sideloaded Instagram Ipa in my m1 Mac. I want to intercept the https traffic of instagram app. which tools and method I should use?
I am aware of the method through iPhone with frida stuff and bypassing ssl pinning.

but whats is the way to this in ipa installed in M1 macs?

Posted

Theoretically, the traffic will still go via your Mac so you should be able to see the app traffic if you mitm your Mac.

Posted
20 minutes ago, Rook said:

Theoretically, the traffic will still go via your Mac so you should be able to see the app traffic if you mitm your Mac.

the iOS apps generally have security measures implemented like ssl pinning which can be bypass in an jailbroken iPhone using Frida.  Dont know how we can attach/hook frida on iOS apps running in m1 Macs.

Posted
1 hour ago, softolift said:

the iOS apps generally have security measures implemented like ssl pinning which can be bypass in an jailbroken iPhone using Frida.  Dont know how we can attach/hook frida on iOS apps running in m1 Macs.

Unfortunately, I do not know of a solution to that at this time.

Posted (edited)
16 hours ago, Rook said:

Unfortunately, I do not know of a solution to that at this time.

Check this tweet.

This tweet is of 2020. Will signing from sideload works? Also if you dont have expertise in this then can you refer an expert here to answer my query?

 

 

Updated by softolift
Posted

I’m under the impression that macOS no longer allows you to run iOS apps with SIP disabled.

Posted (edited)
2 hours ago, Rook said:

I’m under the impression that macOS no longer allows you to run iOS apps with SIP disabled.

tweet is 2 years old. much has changed since then. We can enable/disbale SIP if app works either way. also if you look into the tweet reply, one person also sugggested no need to disbale SIP. thats not the issue. 
I have instagram app succesfully signed and installed through sidelodaly in macOS. all I need is to attach frida with it to intercept traffic. let me know if you have any thoughts on it or you can refer anyone who is more knowlegable in it.

Updated by softolift

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines