Comment by wutwutwat

19 days ago

Did everyone forget about wireshark, which can totally be ran as non-root?

https://blog.wireshark.org/2010/02/running-wireshark-as-you/

It's still more setup than just installing this tool.

Also, can Wireshark/libpcap decrypt SSL/TLS traffic this easily?

  • Not in my experience; I think I gave up and opted for mitmproxy which works but is not this easy/seamless.

Wireshark is awesome but yeah as others mentioned it's the TLS decryption piece that is difficult in that workflow