https in de titel bedoelde ik 
Ettercap is een sniffer/interceptor/logger voor een geswitched!!! LAN.
http://ettercap.sourceforge.net
It's possible to sniff in four modes.
+ IP Based, the packets are filtered on IP source and dest
+ MAC Based, packets filtered on mac address, useful to sniff connections through gateway
+ ARP based, uses arp poisoning to sniff in switched lan between two hosts (full-duplex).
+ PublicARP based, uses arp poisoning to sniff in switched lan from a victim host to all other hosts (half-duplex).
Cool Features: Characters injection in an established connection : you can inject character to server (emulating commands) or to client (emulating replies) maintaining the connection alive !!
SSH1 support : you can sniff User and Pass, and even the data of an SSH1 connection. ettercap is the first software capable to sniff an SSH connection in FULL-DUPLEX
HTTPS support : you can sniff http SSL secured data... and even if the connection is made through a PROXY
Plug-ins support : You can create your own plugin using the ettercap's API.
Password collector for : TELNET, FTP, POP, RLOGIN, SSH1, ICQ, SMB, MySQL, HTTP, NNTP, X11, NAPSTER, IRC, RIP, BGP, SOCKS 5, IMAP 4, VNC (other protocols coming soon...)
Paket filtering/dropping You can set up a filter that search for a particular string (even hex) in the TCP or UDP payload and replace it with yours or drop the entire packet.
OS fingerprint: you can fingerprint the OS of the victim host and even its network adapter
Kill a connection: from the connections list you can kill all the connections you want
wat dacht je daarvan
dacht je toch dat een geswitched lan veilig was...
en ook nog ssh en https is relatief eenvoudig te sniffen..op passwords...
Interface: All this feature are integrated with a easy-to-use and pleasureful ncurses interface. (see screenshots)
Platform: Linux 2.0.x
Linux 2.2.x
Linux 2.4.x FreeBSD 4.x
OpenBSD 2.[789]
NetBSD 1.5
Ettercap is een sniffer/interceptor/logger voor een geswitched!!! LAN.
http://ettercap.sourceforge.net
It's possible to sniff in four modes.
+ IP Based, the packets are filtered on IP source and dest
+ MAC Based, packets filtered on mac address, useful to sniff connections through gateway
+ ARP based, uses arp poisoning to sniff in switched lan between two hosts (full-duplex).
+ PublicARP based, uses arp poisoning to sniff in switched lan from a victim host to all other hosts (half-duplex).
Cool Features: Characters injection in an established connection : you can inject character to server (emulating commands) or to client (emulating replies) maintaining the connection alive !!
SSH1 support : you can sniff User and Pass, and even the data of an SSH1 connection. ettercap is the first software capable to sniff an SSH connection in FULL-DUPLEX
HTTPS support : you can sniff http SSL secured data... and even if the connection is made through a PROXY
Plug-ins support : You can create your own plugin using the ettercap's API.
Password collector for : TELNET, FTP, POP, RLOGIN, SSH1, ICQ, SMB, MySQL, HTTP, NNTP, X11, NAPSTER, IRC, RIP, BGP, SOCKS 5, IMAP 4, VNC (other protocols coming soon...)
Paket filtering/dropping You can set up a filter that search for a particular string (even hex) in the TCP or UDP payload and replace it with yours or drop the entire packet.
OS fingerprint: you can fingerprint the OS of the victim host and even its network adapter
Kill a connection: from the connections list you can kill all the connections you want
wat dacht je daarvan
dacht je toch dat een geswitched lan veilig was...
en ook nog ssh en https is relatief eenvoudig te sniffen..op passwords...
Interface: All this feature are integrated with a easy-to-use and pleasureful ncurses interface. (see screenshots)
Platform: Linux 2.0.x
Linux 2.2.x
Linux 2.4.x FreeBSD 4.x
OpenBSD 2.[789]
NetBSD 1.5
. Gebruik dat voortaan svp, in plaats van twee of meerdere berichtjes achter elkaar te posten.