EKFiddle – A framework to study Exploits Kits.

EKFiddle is A framework based on the Fiddler web debugger to study Exploit Kits, malvertising and malicious traffic in general.


+ Toolbar buttons
+ QuickSave
+ VPN; With EKFiddle 0.2, a VPN GUI (.ovpn) is now available inside of Fiddler.
+ Import SAZ/PCAP; A shortcut to load SAZ or PCAP captures.
+ View/Edit Regexes
+ Run Regexes
+ Clear Markings; Clear any comment and colour highlighting in the currently loaded sessions.
+ Advanced UI on/off; Toggle between the default column view or extra columns with additional information.
+ ContextAction menu

EKFiddle right click

Change default text editor (optional):
In the same Tools -> Options menu, click on the Tools tab.
– Windows: notepad.exe or notepad++.exe
– Linux: gedit
– Mac: /Applications/TextEdit.app or /Applications/TextWrangler.app
Close Fiddler


