Re: webmitm

From: e247net (e247net@hotmail.com)
Date: Thu Aug 07 2003 - 04:33:10 EDT


Hi

i started with webmitm -dd and see only all the GET requests from "victim"
but no traffic from real site back .

victim -- > attacker ---> real site

Btw, i found out that my dnsspoof is working intermittently... thought i put
www.hotmail.com and mail.yahoo.com in
the dnsspoof.hosts file but only mail.yahoo.com is being spoofed and not
www.hotmail.com.. any help plse

thanks

----- Original Message -----
From: "Christine Kronberg" <Christine_Kronberg@genua.de>
To: "e247net" <e247net@hotmail.com>
Cc: <pen-test@securityfocus.com>
Sent: Thursday, August 07, 2003 3:17 PM
Subject: Re: webmitm

> On Wed, 6 Aug 2003, e247net wrote:
> >
> > Does anyone had successfully used webmitm to
> > prove the
> > vulnerability of SSL which I am trying as well with dsniff - webmitm but
> > of no success.... when " victim" initiated the connections
> > to SSL sites .. the "attack" runnning webmitm shows error =
> > client process xxx terminated with status 0 ... can you help ?? thanks
>
> How did you start webmitm? Don't forget the "-d" Option to
> see more.
> It works like charm for GET requests, but I have problems
> with POST requests. Anyone got that working?
>
> Cheers,
>
>
> Chris.
>
> --
> GeNUA mbH
>
>
>

---------------------------------------------------------------------------
----------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:53:38 EDT