InterceptSuite – MitM proxy that handles StartTLS upgrades
InterceptSuite – MitM proxy that handles StartTLS upgrades
I built InterceptSuite to solve a problem I kept running into as a security engineer: there are virtually no good MITM proxies for non-HTTP protocols, and the few that exist completely break when protocols upgrade from plaintext to TLS. The core technical challenge was implementing universal TLS upgrade detection. When PostgreSQL, MySQL, SMTP, or any other protocol issues a StartTLS command, most tools just give up. They'll show you the initial plaintext handshake, then nothing when TLS encryption kicks in. InterceptSuite automatically detects when ANY protocol switches to TLS and handles the interception seamlessly. It's not just another HTTP proxy - it's designed specifically for database connections, email protocols, and desktop thick client application traffic that uses TLS or TLS upgrades. Technical highlights: - Automatic TLS upgrade handling for any protocol, including StartTLS like SMTP, PostgreSQL, etc - Cross-platform GUI (Windows, macOS, Linux) - Real-time traffic interception and modification - Project management for security assessments The Standard Edition is free and open source. There's also a Pro version with additional features like PCAP export and project management. Would love feedback.
Share cardActual performance
Launch Intel predictions
Analyze your own launch →Incorrect prediction on native model
Similar products
A CORS proxy in a container
Cors-container – A CORS proxy in a container
A CORS proxy in a container
RedFI – Redis Fault-Injection Proxy
ChromeDriver Proxy an extensible proxy to ChromeDriver
Inlets as an IPv6 Proxy
Notifier/Proxy Logger
Proxy.py
Programmable Proxy for Trino
WrapGuard – Userspace WireGuard Proxy