Circumventing SSL with Ettercap

Video By: Iljya Kalai

This video shows how SSL can be circumvented using an ARP Man in the Middle Attack
There are 3 scenes: The attacking computer was running nUbuntu 6.06 with a D-Link G650 wireless card.

The attack works as follows:
  1. Attacker connects to the network
  2. Attacker sends specific ARP replies to the gateway and victim so that packets are routed through him
  3. Victim requests an website using SSL
  4. Attacker relays this request to the actual Server
  5. Server replies with a certificate
  6. Attacker swaps his own certificate for the Server's
  7. Victim accepts the fake certificate and submits his credentials
  8. Attacker decrypts the message, logs it, and then re-encrypts it with the Servers certificate
  9. Further messages are relayed in a similar manner and the entire SSL session is captured transparently
The Video is 16 MB so please give it time to load. The controls will appear once the video is loaded.



Generated by pyvnc2swf-0.8.1