SkillAgentSearch skills...

Spyglass

IoT Companion Application Man-in-the-Middle Scripts described in our paper: "Through the Spyglass: Towards IoT Companion App Man-in-the-Middle Attacks"

Install / Use

/learn @tj-oconnor/Spyglass
About this skill

Quality Score

0/100

Supported Platforms

Universal

README

"SpyGlass" Mitmproxy scripts

This repository contains the scripts used in our paper, "Through the Spyglass: Towards IoT Companion App Man-in-the-Middle Attacks" [bib] [pdf]

Installation

These scripts rely on mitmrpoxy. See https://docs.mitmproxy.org/stable/overview-installation/ for installing mitmproxy.

Usage

Start a script with the (-s) option for either mitmproxy or mitmweb

mitmweb -s <script.py>

Example impacts of lack of SSL-Pinning

hiding users on the devices:

clearing logs on the devices:

revealing sensitive information:

manipulating integrity of images:

controlling state of devices:

View on GitHub
GitHub Stars4
CategoryDevelopment
Updated11mo ago
Forks0

Languages

Python

Security Score

67/100

Audited on Apr 7, 2025

No findings