Dev Tools · 1h ago
Pentester Builds Custom Listener After Burp Fails
A pentester spent three days unable to capture traffic on a financial app due to proxy issues, despite reinstalling certs and adjusting settings. They built a browser extension to capture requests, then a local listener to store them, overcoming CORS. The custom setup worked where Burp and Caido failed, capturing traffic for a two-role app with 200+ endpoints.
Meridian48 take
This is a practical workaround for a common pentesting pain point, but it's a niche developer story, not a major tech trend.
pentestingproxy-troubleshooting