# node_ssl_logger

> Decrypts and logs a process's SSL traffic using Frida

Latest version **1.0.1** (published 2018-05-29) · 0 weekly downloads

## Install

```sh
npm install node_ssl_logger
pnpm add node_ssl_logger
yarn add node_ssl_logger
bun add node_ssl_logger
```

Provides the command `node_ssl_logger`.

## Health

**Score 15/100 (F)** — status: abandoned.

Positive: no vulnerabilities.

Warnings: low downloads; no types; no esm support.

Negative: abandoned; low maintenance score.

## Facts

| | |
|---|---|
| Version | 1.0.1 |
| Published | 2018-05-29 |
| First published | 2018-05-29 |
| Weekly downloads | 0 |
| TypeScript types | none |
| Module format | CommonJS |
| Dependencies | 1 |
| Unpacked size | 19.3 KB |
| Known vulnerabilities | 0 |
| Install scripts | no |
| Author | Lorenzo Mangani |
| Maintainers | lmangani |

## Links

- npm: https://www.npmjs.com/package/node_ssl_logger
- npm.io page: https://npm.io/package/node_ssl_logger

## Dependencies (1)

- [frida](https://npm.io/package/frida.md) ^11.0.3

## Recent versions

- 1.0.1 (latest) — 2018-05-29

## README

<img src="https://cdn.pixabay.com/photo/2012/04/16/13/32/lock-36018_640.png" width="50"/>

# node_ssl_logger
Decrypts and logs a process's SSL traffic via Frida Code Injection

The functionality offered by **node_ssl_logger** is intended to mimic Google's [ssl_logger](https://github.com/google/ssl_logger) and [Echo Mirage](http://resources.infosecinstitute.com/echo-mirage-walkthrough/)'s SSL logging functionality on NodeJS/Linux

Status:
* Experimental! Please use the original! (unless you hate python)

## Requirements

This program uses the frida framework to perform code injection.

Frida can be installed as follows: ```sudo pip install frida```

## Installation
```
npm install
```

## Usage
```
nodejs node_ssl_logger.js -p <process>
```

#### Example
```
# Make a local pipe for input to our openssl client
$ mkfifo pipe

# Create our openssl client, which will receive input from our pipe
$ openssl s_client -ign_eof -connect example.org:443 > /dev/null 2> /dev/null < pipe &
[1] 98954

# Begin writing the request to our pipe
$ printf "GET / HTTP/1.0\nHost:example.org\n" > pipe

# Begin logging the SSL traffic for our openssl client process
$ nodejs node_ssl_logger.js -p openssl &
[2] 98962
Press Ctrl+C to stop logging.

# Write the final line-feed to our pipe to complete the HTTP request
$ printf "\n" > pipe

# Check the output for magic!
```

## Todo

* pcap export
* plenty other things

#### Credits
Script and Examples based on Jason Geffner's python [ssl_logger](https://github.com/google/ssl_logger)

---
_Source: https://npm.io/package/node_ssl_logger · Machine-readable twin of the npm.io package page. Health data is recomputed on every publish._
