★ Root NOT needed on 3.x or higher android OS★
Why would you use it:
- behind corporate, school firewall/proxy, needing to connect to squid, isa/forefront proxy with authentication
Or use Drony:
- developer to examine http traffic, with embedded chrome devtools that can be used as ide
- security analyst examining how apps communicate with servers
Capture, intercept, analyze, modify, replay http requests, websockets.
Can connect to another proxy (Basic, Digest, NTLM auth support). For example Orbot.
Can act as pass-through proxy, traffic is not stored, ssl tunnel remains the same to server.
Proxy can also acts as SSL man-in-the-middle.
It generates sites certificates on the fly.
Issuer is named UNTRUSTED.
Based on WebScarab.
For transparent proxy, superuser/su/iptables are needed.
There is gui for application redirection to transparent proxy.
Can act as Web server to access captured data.
Can create pcap files that can be decrypted with wireshark.
Using Chrome Developer Tools remote web gui for display data.
Chrome devtools tab for device connections like TcpView from Sysinternals.
Chrome devtools Console acting as android shell.
If you would like some new feature in it, send request to[email protected]
source code: http://code.google.com/p/sandrop/
XDA thread: http://forum.xda-developers.com/showthread.php?t=1737138
Beta testing group: https://groups.google.com/d/forum/sandroproxy-beta-test
YouTube, WhatsApp not working?
Example of usage:
Use stock browser and change that wi-fi uses proxy on localhost:8008
Check log tab for proxy activity, data tab for request/response content
keywords: ssl, client certficate, proxy, p12, pfx, http, https analyzer, transparent proxy, capture http, replay http, modify http, http traffic, tamper http data
ISA proxy , Forefront TMG proxy, squid proxy, corporate proxy, ntlm auth, basic auth, chrome devtools, websocket, ws, wss, tcpview, network connections, school proxy, pcap, wireshark
there are ads on log tab and Google Analytics events on switching tabs
sorry for that
If you feel uncomfortable about this,
send mail and version without this will be build for you.
info: you can capture all tcp traffic even on non rooted phone if Drony makes vpn and use upper proxy localhost 8008
maint: removed some not needed files that Google Play policy complains about
no Ads and Google analytic events
maint fix: http://code.google.com/p/sandrop/issues/detail?id=107
this fix that more connections are resolved which app made them