[buug] Evil Packet Sniffer

f.johan.beisser jan at caustic.org
Fri Apr 18 14:38:48 PDT 2003


On Fri, 18 Apr 2003, Bill Honeycutt wrote:

> For an existing ssh connection, can you determine which protocol version
> (1 or 2) was used to establish the connection?

no.

for the ettercap trick to work, you have to pass keys unsafely. it's
taking advantage of a flaw in the sshv1 protocol.. not in the encryption
between the two hosts.

-------/ f. johan beisser /--------------------------------------+
  http://caustic.org/~jan                      jan at caustic.org
	"Champagne for my real friends, real pain for
	  my sham friends." -- Tom Waits




More information about the buug mailing list