The men behind ettercap-NG
An anonymous reader writes "In 2001 two Italians released the first beta version of ettercap, a network protocol analyzer. Ettercap is now covered in most security books. It's number 9 in the Top 75 Security Tools list of the Nmap Hackers mailing list. This summer they released ettercap-NG, which was completely rewritten from scratch with better, modular code, making it easier to add new features and write and submit patches. NewsForge recently caught up with its authors for an Interview."
-PENIS--PENIS--PENIS--PENIS-
P_______________________8..P
E__Bow down to the_____#~..E
N__Lord's penis_______8.',-N
I_____________________#',-.I
S__Jesus wants your__8',-..S
-__anus, and he_____#~',-..-
P__wants it NOW! ___8_',-..P
E__________________##',-',-E
N__An original_____8',-',";N
I__TrollKore______##',-',";I
S__work of art.___8',-',";.S
-__By Dessimat0r ##',-',";.-
P________________8',-',";,.P
E_______________#'',-',";,.E
N______________8(',-',";,..N
I_____________#(',-',";,.,.I
S__________#8#8_',-',";,.,.S
-_________#',-.8',-',";,.,.-
P________8~',-..#',-',";,..P
E_______#'',-',";8_',-',";.E
N_____8=',-',";.+#+',-',";.N
I____#=',-',";,._8',-',";,.I
S___#=',-',";,..(#',-',";.8S
-__8(',-',CMDR,.(8',-',";s#-
P_8(',-',.TACO.";#',-',-s8_P
E_#z',-','WOZ',";8',-..s#__E
N_8_.,#',"ERE',";~#,..88___N
I_#.##',-,',',,";~8,8#_____I
S_8##',-+~'',-',-~#'8______S
-_#.,..-',-',";.'=8#_______-
P_.8+_',-',";,.'88_________P
E___888',-',";~8___________E
N______8#888#88____________N
I__________________________I
S____.oO TrollKore Oo._____S
-_At the head of the game._-
P__________________________P
-PENIS--PENIS--PENIS--PENIS-
Get the code to the TrollKore ASCII penis here...
All you cock-loving fuckers out there, here is a special treat for you bastards, take a look at this knob. NOW SUCK IT, MOTHERFUCKERS!
You are not logged in. You can log in now using the Important Stuff: Please try to keep posts on topic. Try to reply to other people's comments instead of starting new threads. Read other people's messages before posting your own to avoid simply duplicating what has already been said. Use a clear subject that describes what your message is about. Offtopic, Inflammatory, Inappropriate, Illegal, or Offensive comments might be moderated. (You can read everything, even moderated posts, by adjusting your threshold on the User Preferences Page) If you want replies to your comments sent to you, consider logging in or creating an account. Problems regarding accounts or comment posting should be sent to CowboyNeal the convenient form below, or Important Stuff: Please try to keep posts on topic. Try to reply to other people's comments instead of starting new threads. Read other people's messages before posting your own to avoid simply duplicating what has already been said. Use a clear subject that describes what your message is about. Offtopic, Inflammatory, Inappropriate, Illegal, or Offensive comments might be moderated. (You can read everything, even moderated posts, by adjusting your threshold on the User Preferences Page) If you want replies to your comments sent to you, consider logging in or creating an account. Problems regarding accounts or comment posting should be sent to CowboyNeal
..has the sweetest smile!
frsit psot!
(maybe)
(it' a joke)
.... or some evil conspiracy at work?
It is a matter of personal feelings, however I never liked ettercap - for me too shiny. I have preferred tcpdump end, especially, [t]ethereal. Ethereal has a decent Gnome GUI for those who do like such things.
You can defy gravity... for a short time
Where is the link to ettercap?
Thats one way to deal with windows people
"When you absolutely have to know every mofo's email username and pass in the room"
--Gentoo Baby!
All too often, software announcements mention just the name of the item and not what it is or why it's interesting. As an example, compare this recent summary for Zope.
Not everyone's heard of Ettercap; this summary says what it is (network protocol analyzer) and also why it's important (in top ten of security tools). I hope to see more summaries of this caliber on Slashdot.
The other top tools.
While it's another tool that is handy for analysis, the same thing can be accomplished with about three other tools Handy, but ...
Ettercap is evil :)
It's more of a hacking tool than a network analizer. It allows you to sniff switched networks, perform man-in-the-middle-attacks, it looks for passwords, etc.
So, arp poisoning, DNS spoofing, application specific sniffing to grab mail/IRC/instant messaging in transit. I'm sure this is all entirely legitimate ... anyone care to justify this application, which seems to be yet another blackhat/script kiddy tool?
Ettercap-NG has fine production values, but I prefer the retro social commentary of the original. I guess you just get comfortable with what you grew up with.
We chose the GPL because it's the most used, so it has to be the best.
I have a nice Windows XP CD to sell you, guys.
--
Glass, total pwnage.
Its man in the middle feature lets me catch botnets on my college campus (I work in the IT dept.) and shut them down immediately.
"anyone care to justify this application, which seems to be yet another blackhat/script kiddy tool?"
:)
Anyone who's smart enough to use it effectively deserves results
Seriously, a swiss army knife for kiddies is by definition a swiss army knife for security testers and system managers. I'd prefer for hacking tools to be available for all rather than just for the malicious portion of the online population.
For the love of God, please learn to spell "ridiculous"!!!
The new 3.0 release of the excellent Ultimate Boot CD has Ettercap included with the INSERT live CD. If you're a Windows user, it's an easy way to boot into Linux and try it out without having to worry about compiling and what not.
What I should have said was nothing.
and have used it for long for time. I tend to use it for evil and not good though =/. Being on a switched enviroment at work makes it the perfect happy fun time tool! :-)
Slashdot readers can also write html on the fly but they never know dick about how networks and networking protocols work.
I will be yucking it up for the next couple of hours on this one. These are always stupifyingly funny.
Signed,
Mr. Superior
PS. You guys are losers.
The program did something similar, it would monitor network traffic and show you all the images that were being transmitted. So you could run it and figure out what sites people were surfing and stuff like that. It was very cool, but I have been unable to find it recently and I don't remember the name. Can anyone help me? Any programs that do this? Thanks.
Comment forecast: Bits of genius surrounded by a sea of mediocrity.
Is ettercap uttercrap?
By "real" I mean you get paid to admin a box other than your own.
I'm just curious. I tend to avoid the "dark gray" tools like this and stick to the "light gray" tools like nmap.
So have you used this tool? In what capacity? Penetration testing? Just poking around the network? For your own education or did you use the info in a report or to solve a specific problem? Etc?
Just wondering if I should take the time to add it to my toolbox.
Old fat spider
spinning in a tree!
Old fat spider
can't see me!
Attercop! Attercop!
Won't you stop,
Stop your spinning
and look at me!
Old Tomnoddy, all big body,
Old Tomnoddy can't spy me!
Attercop! Attercop!
Down you drop!
You'll never catch me up your tree!
http://shit.slashdot.org/article.pl?sid=04/11/09/1 350205
What has happened to robertgraham.com ?? I used to send people there to get a clue about security. "Connection refused" ??!! Huh?
Check out: ettercap.darwinports.com
http://tinyurl.com/4ny52
I think ettercap really caters to kiddies, like AimSniff.pl and others, especially with all the password tools. It is for switched lans, which is like the popular Linksys routers, so many a thirteen year old adolescent is using ettercap to read someones AIM conversations.
[So] I didn't know it existed, but this tool sounds relly useful to me as a completely "white" application.
I work at a company that makes cell phone system test gear. We help cell phone companies set up quality and throughput testing and transport/content correctness.
Many is the time when, as I develop the tidbits, I want to see the data flow and content actually being received. I have become a zen grand master of getting my ass lost piecing together partial frames and retransmits.
A program that reconstructs the session streams into "content" for me would be amazingly useful.
Not so much as an "admin" tool, and more as a development aid, this thing sounds well worth investigating.
Innocent people shouldn't be forced to pay for inferior software development.
--"Code Complete" Microsoft Press
In case you didn't catch this, its a quote of the song Bilbo sang when taunting the spiders of Mirkwood in "The Hobbit"
(Horrors. I almost wrongly said it was a misquote of a Tom Bombadil song from The Fellowship of the Ring.. Shudder, what a public embarasment THAT would have been...)
Its not users who are broken, it's systems not taking account their likely behaviour and fixing it technically.