
A WebSocket Manipulation Proxy with a user interface to capture, intercept, and send custom messages for WebSocket and Socket.IO communications.

A WebSocket Manipulation Proxy with a user interface to capture, intercept, and send custom messages for WebSocket and Socket.IO communications.
WSSiP is a Penetration Testing product. Pricing is free.
Short for "WebSocket/Socket.io Proxy", this tool, written in Node.js, provides a user interface to capture, intercept, send custom messages and view all WebSocket and Socket.IO communications between the client and server. Upstream proxy support also means you can forward HTTP/HTTPS traffic to an intercepting proxy of your choice (e.g. Burp Suite or Pappy Proxy) but view WebSocket traffic in WSSiP. There is an outward bridge via HTTP to write a fuzzer in any language you choose to debug and fuzz for security vulnerabilities. See Fuzzing for more details. Written and maintained by Samantha Chalker (@thekettu). Icon for WSSiP release provided by @dragonfoxing. Installation From Packaged Application See Releases. From npx via npm (for CLI commands) Run the following in your command line: npx wssip. From Source Using a command line: # Clone repository locally git clone https://github.com/nccgroup/wssip # Change to the directory cd wssip # If you are developing for WSSiP: # npm i # If not... (as to minimize disk space): npm i electron npm i --production # Yarn version: # yarn add electron # yarn install
Common questions about WSSiP including features, pricing, alternatives, and user reviews.
WSSiP is A WebSocket Manipulation Proxy with a user interface to capture, intercept, and send custom messages for WebSocket and Socket.IO communications. It is a Offensive Security solution designed to help security teams with Proxy, Fuzzing, Websocket.
WSSiP is built for security teams handling Proxy, Fuzzing, Websocket. Teams typically adopt WSSiP when they need to offensive security capabilities integrated into their existing stack. Explore similar tools at https://cybersectools.com/alternatives/wssip
WSSiP is a free Offensive Security tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://github.com/nccgroup/wssip/ for download and installation instructions.
Popular alternatives to WSSiP include:
Compare all WSSiP alternatives at https://cybersectools.com/alternatives/wssip
WSSiP is for security teams and organizations that need Proxy, Fuzzing, Websocket. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Offensive Security tools can be found at https://cybersectools.com/categories/offensive-security-testing
Head-to-head feature, pricing, and rating breakdowns.
A web application security testing platform that combines manual and automated testing tools for conducting comprehensive security assessments and penetration testing.
Fuzz-testing tool for auditing 4G, VoLTE, and 5G telecom network elements and protocols
Multi-disciplinary security assessment service spanning app-sec, crypto, blockchain
SecLists is a comprehensive repository of security testing lists including usernames, passwords, URLs, fuzzing payloads, and web shells used during penetration testing and security assessments.