<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; the middler</title>
	<atom:link href="http://www.darknet.org.uk/tag/the-middler/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Mon, 22 Mar 2010 06:54:39 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>The Middler &#8211; User Session Cloning &amp; MITM Tool</title>
		<link>http://www.darknet.org.uk/2009/07/the-middler-user-session-cloning-mitm-tool/</link>
		<comments>http://www.darknet.org.uk/2009/07/the-middler-user-session-cloning-mitm-tool/#comments</comments>
		<pubDate>Fri, 03 Jul 2009 10:43:04 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[hacking tool]]></category>
		<category><![CDATA[inguardians]]></category>
		<category><![CDATA[jay beale]]></category>
		<category><![CDATA[network hacking tool]]></category>
		<category><![CDATA[network-security]]></category>
		<category><![CDATA[session cloning]]></category>
		<category><![CDATA[session cloning tool]]></category>
		<category><![CDATA[the middler]]></category>
		<category><![CDATA[user session cloning]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1915</guid>
		<description><![CDATA[The Middler is a Man in the Middle tool to demonstrate protocol middling attacks. Led by Jay Beale, the project involves a team of authors including InGuardians agents Justin Searle and Matt Carpenter.  The Middler is intended to man in the middle, or &#8220;middle&#8221; for short, every protocol for which we can create code.
In [...]]]></description>
			<content:encoded><![CDATA[<p>The Middler is a Man in the Middle tool to demonstrate protocol middling attacks. Led by Jay Beale, the project involves a team of authors including InGuardians agents Justin Searle and Matt Carpenter.  The Middler is intended to man in the middle, or &#8220;middle&#8221; for short, every protocol for which we can create code.</p>
<p>In our first alpha release, we released a core built by Matt and Jay, with introductory plug-ins by Justin and InGuardians agent Tom Liston. It runs on Linux and Mac OS X, with most of the code functional on Windows and BSD Unix.</p>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<p>The current codebase is in the alpha state, but a beta release is coming soon, with better documentation (see the wiki), easier installation, and even more plug-ins.</p>
<p><strong>Plug-ins</strong></p>
<ul>
<li>plugin-beef.py &#8211; inject the Browser Exploitation Framework (BeEF) into any HTTP requests originating on the local LAN</li>
<li>plugin-metasploit.py &#8211; inject an IFRAME into cleartext (HTTP) requests that loads Metasploit browser exploits</li>
<li>plugin-keylogger.py &#8211; inject a JavaScript? onKeyPress event handler to cleartext forms that get submitted via HTTPS, forcing the browser to send the password character-by-character to the attacker&#8217;s server, before the form is submitted.</li>
</ul>
<p>The author team has done a tremendous amount of research, design and pseudo-code work, fleshing out attacks on web-based e-mail systems and social networking sites. </p>
<p><script type="text/javascript"><!--
google_ad_client = "pub-3033787195489589";
google_alternate_ad_url = "http://www.darknet.org.uk/google_adsense_script.html";
google_ad_width = 468;
google_ad_height = 60;
google_ad_format = "468x60_as";
google_ad_type = "text";
google_ad_channel ="9647861209";
google_color_border = "FFFFFF";
google_color_bg = "FFFFFF";
google_color_link = "df6f0b";
google_color_url = "df6f0b";
google_color_text = "000000";
//--></script>
<script type="text/javascript"
  src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script></p>
<p><strong>Dependencies</strong></p>
<p>The Middler depends on the following Python modules:</p>
<ul>
<li>
scapy</li>
<li>libpcap</li>
<li>readline</li>
<li>libdnet</li>
<li>beautifulsoup</li>
</ul>
<p>You can download The Middler here:</p>
<p><a href="http://inguardians.com/tools/middler-alpha-2009022301.tgz">middler-alpha-2009022301.tgz</a></p>
<p>Or read more <a href="http://inguardians.com/tools/">here</a>.</p>
<p align="left"><a class="tt" href="http://twitter.com/home/?status=The+Middler+%E2%80%93+User+Session+Cloning+%26+MITM+Tool+http://bit.ly/hDa8e+from+@THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/07/the-middler-user-session-cloning-mitm-tool/&amp;title=The+Middler+%E2%80%93+User+Session+Cloning+%26+MITM+Tool" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/07/the-middler-user-session-cloning-mitm-tool/&amp;title=The+Middler+%E2%80%93+User+Session+Cloning+%26+MITM+Tool" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/07/the-middler-user-session-cloning-mitm-tool/&amp;t=The+Middler+%E2%80%93+User+Session+Cloning+%26+MITM+Tool" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/07/the-middler-user-session-cloning-mitm-tool/&amp;title=The+Middler+%E2%80%93+User+Session+Cloning+%26+MITM+Tool" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/07/the-middler-user-session-cloning-mitm-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
