|
|||||||
| BackTrack 4 Bugs and Fixes Post bugs here. Even better, post FIXES here ! |
![]() |
|
|
LinkBack | Thread Tools | Display Modes |
|
|||
|
I now tested Ettercap GTK on BT4.
I joined my test wep network with one PC and on the other one I connected with BT4 to ettercap. I choose MTM, netmask etc. like always and went on my PC to a website from which I know that the Password is shown in ettercap. (studivz.net]studiVZ | Bist Du schon drin?[/url]) But nothing happens in etterccap using BT4. With BT3, no Problem. The Certificate Failure appears and if you try to load the website again, the password is shown in ettercap. Are there Problems in BT4? I`m even wondering wheres my MDK3 ? |
|
|||
|
looks like ettercap has problems sniffing the ssl password. I did try using the ettercap and with the following command:
ettercap -Tqi ath0 -l sslpasswd -M arp:remote /gateway-ip/ /victim-ip/ The ssl certificate warning does show up but no password was captured. Note: i did modify the /etc/etter.conf |
|
|||
|
Use the write-up by g0tmi1k to use sslstrip to strip the certificate and leave it in plaintext.
Code:
http://forums.remote-exploit.org/backtrack-4-howto/24426-video-tutorial-how-crack-snifff-ssl-https-sslstrip.html
__________________
A+ Certified |
|
||||
|
[Video+Tutorial] How to: Crack snifff SSL / HTTPS (sslstrip)
EDIT: Sorry, didn't saw that the link was already posted. |
|
||||
|
Quote:
|
![]() |
| Bookmarks |
| Thread Tools | |
| Display Modes | |
|
|