SSL sniffing of XP, can be done in number of ways, it can be done with a SDK which is relevant for commercial applications or it can be done with a SSL Sniffer, you can even use Wireshark, but for that you must have the SSL key.
There are number of ways to perform SSL DecryptÂ and it’s up to the programmer to decide what works best for him:
Winsock LSP and SSL is a complex and simple issue 🙂 basically the Winsock LSP sees the SSL session encrypted and can’t see the decrypted content of the session. It’s possible to decrypt SSL sessions, but that’s a topic for another post.
Winsock LSP can be used to trace SSL sessions to their root, you can easily get the following information about a SSL session by using LSP: