Network Security Consulting Agency Since 1989 - Specialized in Unix, Windows, TCP/IP and Internet
You are here
:
Home
>
Resources
>
Lectures
> Monkey in the Middle Attacks against SSH and HTTPS
Search
:
Services
Skills & Expertise
Consulting
ISO 27001 services
Vulnerabilities monitoring
Audit & Assessment
Penetration tests
Vunerability assessment (TSAR)
Technical assistance
Training courses
E-learning
Conferences
Agenda
Past events
Tutorials
Resources
Thematic index
Tips
Lectures
Courses
Articles
Tools (download)
Vulnerability watch
Company
Hervé Schauer
Job opportunities
Credentials
History
Partnerships
Associations
Press and
communication
HSC Newsletter
Press review
Press releases
Publications
Contacts
How to reach us
Specific inquiries
Directions to our office
Hotels near our office
Monkey in the Middle Attacks against SSH and HTTPS
Access to the content
Beginning of the presentation
Description
Description of man-in-the-middle attacks against SSH and SSL, as used by the dsniff tool.
Context & Dates
Talk made during JRES on 12 December 2001, and at the EFE seminar on 23 January 2002.
Author
Denis Ducamp
Type
35 slides [
-
]
Abstract &
Table of content
Flyleaf
Introduction
dsniff, la boite à outils
Dug Song
sshmitm
webmitm
sshow
dsniff
Les autres outils
Les bibliothèques
Pourquoi ça marche ?
SSHv1
SSHv2
HTTPS
Les signes d'une attaque ?
SSH
HTTPS
HTTPS (mauvais certificat)
HTTPS (autorité non reconnue)
Comment se protéger ?
SSH
Ce qui ne marche pas contre sshmitm
HTTPS
Ce qui ne marche pas contre webmitm
Les analyses de trafic
L'analyse passive de trafic
Analyse de l'authentification
Analyse de la connexion
Analyse des mots de passe
Analyse passive de SSL
Conclusion
Références
Related documents
Monkey-in-the-Middle
Monkey in the middle attacks against SSH and HTTPS
[6 February 2001 -
]
SSH (Secure SHell)
SSL (Secure Socket Layer)
Copyright
© 2001, Hervé Schauer Consultants, all rights reserved.
Last modified on 17 April 2002 at 17:35:55 CET - webmaster@hsc.fr
Information on this server
- © 1989-2010 Hervé Schauer Consultants