Skip to content

Adds enhanced support for network capture decryption#74

Merged
adfoster-r7 merged 2 commits intorapid7:masterfrom
cgranleese-r7:add-support-for-network-capture-decryption
Apr 11, 2025
Merged

Adds enhanced support for network capture decryption#74
adfoster-r7 merged 2 commits intorapid7:masterfrom
cgranleese-r7:add-support-for-network-capture-decryption

Conversation

@cgranleese-r7
Copy link
Contributor

@cgranleese-r7 cgranleese-r7 commented Apr 10, 2025

This pull request adds enhanced support for network capture decryption. By writing to the sslkeylogfile it enable network capture decryption which is useful to decrypt TLS traffic in wireshark.

Needs tested with Metasploit-Framework, to do this add the following to the Metasploit-Framework Gemfile:

gem "rex-socket", path: "../rex-socket"

Then bundle install.

Verification

  • Start msfconsole
  • Use scanner/http/title
  • Run run rhosts=https://www.google.com verbose=true httptrace=true sslkeylogfile=./sslkeylogfile.txt
  • The module should complete
  • Run ls -la and you should now see a file called sslkeylogfile.txt

@cgranleese-r7 cgranleese-r7 force-pushed the add-support-for-network-capture-decryption branch from 50a44c6 to 7050c46 Compare April 11, 2025 11:52
@adfoster-r7 adfoster-r7 merged commit ad20cc3 into rapid7:master Apr 11, 2025
20 checks passed
@cgranleese-r7 cgranleese-r7 deleted the add-support-for-network-capture-decryption branch April 11, 2025 12:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants