This extension mutates ciphers to bypass TLS-fingerprint based bot detection.

Usage

Note: This extension changes network settings at "Settings -> Network -> TLS" and selects "Use custom protocols and ciphers".

  1. Right-click on a Request/Response item in the Proxy History tab
  2. Navigate to Extensions -> Bypass bot detection, and select one of the menu items
  3. f the server's response changes (i.e., the number of words and headers are different), the extension will log the message and add notes to the Proxy History

Modes

Warning

This extension modifies network settings during brute force attacks. It is not recommended to use this extension concurrently with other active scans.

This extension cannot bypass aggressive bot detection.

Copyright © 2024-2025 PortSwigger Ltd.