Added: 4 years ago
From: LiveSecurity
Views: 27,384
Sort by time | Sort by thread (beta)

Link to this comment:

Share to:

All Comments (26)

Sign In or Sign Up now to post a comment!
  • Thankyou for teaching me this :|

  • sarah is beautiful!

  • Will it work with online flash games? I want to steal people's accounts.

  • so basicly the only way the hacker can get to my g mail then he has to be logged on to my network, hence not possible

  • Gotta admit though, for how potentially dangerous this attack can be it is fucking easy

  • Easy to understand.. Cool~! but it make me sad about can not trust world.. Hmm.. Bye..

  • Knew it. Just another whitehat buzzword for an old technique.

    Jesus Christ whitehats.

  • While encryption may be a little more secure and would prevent this particular attack, all a malicious user would have to do is fire up Ettercap and do ARP poisoning on their target computer and then generate a fake SSL certificate and if the user accepts they can de-crypt all traffic.

    Great video though, 5 stars!

  • @ZepplinProgramming The only hard part i that is getting them to accept the fake certificate. Worked on my sister though :)

  • holy-terrorist:> *=* hahaha im new sidejacker *=*

  • does it work with modem ?

  • i am a grey hat!

  • Why do you guys live on the smart thinking of others? I wrote this kinda tool myself a few years ago, and even better, it's crossplatform instead of your 1337 windows. It's a said thing that people like you make money of the back of others. Does it make you proud that your a CISSP? I've seen a dozen CISSP that aren't capable of even writing one stupid little "hello world" script.

  • that was beautiful,lol

  • thanks!!!

    great job

  • How to encrypt myspace??

  • hello greetings

    How can we prevent this kind of situations on a edge ?

    thanks

  • Comment removed

  • what wireless card or adapter are you using?

    Are you using airpcap, or simply winpcap?

  • thanks man hahaha

  • Thank you for the information.

  • Can this also be done against other mail clients such as Yahoo?

  • Yes, the point is that the attacker can see the victim's login credentials. Any web site the victim logs into can work for the attacker, UNLESS the victim has configured the site to encrypt sessions.

  • omg that is bad!

  • Wow, This is tight. I am messing around with this. xD

  • lol @ ExPl0iT3

  • lol yeah. I have messed with this before..But this vid gives better details. xD

Loading...
Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more